This update for mysql-connector-java fixes the following issues:
- CVE-2020-2875: Unauthenticated attacker with network access via multiple
protocols can compromise MySQL Connectors. (bsc#1173600)
- CVE-2020-2934: Fixed a vulnerability which could cause a partial denial
of service of MySQL Connectors. (bsc#1173600)
- CVE-2020-2933: Fixed a vulnerability which could allows high privileged
attacker with network access via multiple protocols to compromise MySQL
Connectors. (bsc#1173600)
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2021-2622=1
- openSUSE Leap 15.3 (noarch):
mysql-connector-java-5.1.47-3.3.1
https://www.suse.com/security/cve/CVE-2020-2875.html
https://www.suse.com/security/cve/CVE-2020-2933.html
https://www.suse.com/security/cve/CVE-2020-2934.html
https://bugzilla.suse.com/1173600
Get the latest Linux and open source security news straight to your inbox.