This update for mysql-community-server to version 5.6.39 fixes several
issues.
These security issues were fixed:
- CVE-2018-2622: Vulnerability in the subcomponent: Server: DDL. Easily
exploitable vulnerability allowed low privileged attacker with network
access via multiple protocols to compromise MySQL Server. Successful
attacks of this vulnerability can result in unauthorized ability to
cause a hang or frequently repeatable crash (complete DOS) of MySQL
Server (bsc#1076369).
- CVE-2018-2562: Vulnerability in the subcomponent: Server : Partition.
Easily exploitable vulnerability allowed low privileged attacker with
network access via multiple protocols to compromise MySQL Server.
Successful attacks of this vulnerability can result in unauthorized
ability to cause a hang or frequently repeatable crash (complete DOS) of
MySQL Server as well as unauthorized update, insert or delete access to
some of MySQL Server...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2018-90=1
- openSUSE Leap 42.2:
zypper in -t patch openSUSE-2018-90=1
To bring your system up-to-date, use "zypper patch".
- openSUSE Leap 42.3 (i586 x86_64):
libmysql56client18-5.6.39-33.1
libmysql56client18-debuginfo-5.6.39-33.1
libmysql56client_r18-5.6.39-33.1
mysql-community-server-5.6.39-33.1
mysql-community-server-bench-5.6.39-33.1
mysql-community-server-bench-debuginfo-5.6.39-33.1
mysql-community-server-client-5.6.39-33.1
mysql-community-server-client-debuginfo-5.6.39-33.1
mysql-community-server-debuginfo-5.6.39-33.1
mysql-community-server-debugsource-5.6.39-33.1
mysql-community-server-test-5.6.39-33.1
mysql-community-server-test-debuginfo-5.6.39-33.1
mysql-community-server-tools-5.6.39-33.1
mysql-community-server-tools-debuginfo-5.6.39-33.1
- openSUSE Leap 42.3 (x86_64):
libmysql56client18-32bit-5.6.39-33.1
libmysql56client18-debuginfo-32bit-5.6.39-33.1
libmysql56client_r18-32bit-5.6.39-33.1
- openSUSE Leap 42.3 (noarch):
mysql-community-server-errormessages-5.6.39-33.1
- openSUSE Leap 42.2 (i586 x86_64):
libmysql56client18-5.6.39-24.15.1
libmysql56client18-debuginfo-5.6.39-24.15.1
libmysql56client_r18-5.6.39-24.15.1
mysql...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2017-3737.html
https://www.suse.com/security/cve/CVE-2018-2562.html
https://www.suse.com/security/cve/CVE-2018-2573.html
https://www.suse.com/security/cve/CVE-2018-2583.html
https://www.suse.com/security/cve/CVE-2018-2590.html
https://www.suse.com/security/cve/CVE-2018-2591.html
https://www.suse.com/security/cve/CVE-2018-2612.html
https://www.suse.com/security/cve/CVE-2018-2622.html
https://www.suse.com/security/cve/CVE-2018-2640.html
https://www.suse.com/security/cve/CVE-2018-2645.html
https://www.suse.com/security/cve/CVE-2018-2647.html
https://www.suse.com/security/cve/CVE-2018-2665.html
https://www.suse.com/security/cve/CVE-2018-2668.html
https://www.suse.com/security/cve/CVE-2018-2696.html
https://www.suse.com/security/cve/CVE-2018-2703.html
https://bugzilla.suse.com/show_bug.cgi?id=1076369
--
Get the latest Linux and open source security news straight to your inbox.