This update for mariadb fixes the following issues:
MariaDB was updated to 10.0.34 (bsc#1078431)
The following security vulnerabilities are fixed:
- CVE-2018-2562: Vulnerability in the MySQL Server subcomponent: Server :
Partition. Easily exploitable vulnerability allowed low privileged
attacker with network access via multiple protocols to compromise MySQL
Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash
(complete DOS) of MySQL Server as well as unauthorized update, insert or
delete access to some of MySQL Server accessible data.
- CVE-2018-2622: Vulnerability in the MySQL Server subcomponent: Server:
DDL. Easily exploitable vulnerability allowed low privileged attacker
with network access via multiple protocols to compromise MySQL Server.
Successful attacks of this vulnerability can result in unauthorized
ability to cause a hang or...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2018-270=1
To bring your system up-to-date, use "zypper patch".
- openSUSE Leap 42.3 (i586 x86_64):
libmysqlclient-devel-10.0.34-32.2
libmysqlclient18-10.0.34-32.2
libmysqlclient18-debuginfo-10.0.34-32.2
libmysqlclient_r18-10.0.34-32.2
libmysqld-devel-10.0.34-32.2
libmysqld18-10.0.34-32.2
libmysqld18-debuginfo-10.0.34-32.2
mariadb-10.0.34-32.2
mariadb-bench-10.0.34-32.2
mariadb-bench-debuginfo-10.0.34-32.2
mariadb-client-10.0.34-32.2
mariadb-client-debuginfo-10.0.34-32.2
mariadb-debuginfo-10.0.34-32.2
mariadb-debugsource-10.0.34-32.2
mariadb-errormessages-10.0.34-32.2
mariadb-test-10.0.34-32.2
mariadb-test-debuginfo-10.0.34-32.2
mariadb-tools-10.0.34-32.2
mariadb-tools-debuginfo-10.0.34-32.2
- openSUSE Leap 42.3 (x86_64):
libmysqlclient18-32bit-10.0.34-32.2
libmysqlclient18-debuginfo-32bit-10.0.34-32.2
libmysqlclient_r18-32bit-10.0.34-32.2
https://www.suse.com/security/cve/CVE-2018-2562.html
https://www.suse.com/security/cve/CVE-2018-2612.html
https://www.suse.com/security/cve/CVE-2018-2622.html
https://www.suse.com/security/cve/CVE-2018-2640.html
https://www.suse.com/security/cve/CVE-2018-2665.html
https://www.suse.com/security/cve/CVE-2018-2668.html
https://bugzilla.suse.com/1078431
--
Get the latest Linux and open source security news straight to your inbox.