Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2019:2048-1 Important: Denial Of Service in Mariadb

suse
Calendar Grey August 5, 2019
Dist Suse Esm H88
Essential security patch for SUSE's mariadb tackling several vulnerabilities and affecting various distributions.
An update that solves 12 vulnerabilities and has two fixes is now available

Summary

This update for mariadb fixes the following issues: Update to MariaDB 10.0.38 GA (bsc#1136037). Security issues fixed: - CVE-2019-2537: Denial of service via multiple protocols (bsc#1136037) - CVE-2019-2529: Denial of service via multiple protocols (bsc#1136037) - CVE-2018-3282: Server Storage Engines unspecified vulnerability (CPU Oct 2018) (bsc#1112432) - CVE-2018-3251: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112397) - CVE-2018-3174: Client programs unspecified vulnerability (CPU Oct 2018) (bsc#1112368) - CVE-2018-3156: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112417) - CVE-2018-3143: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112421) - CVE-2018-3066: Unspecified vulnerability in the MySQL Server component

References

#1013882 #1101676 #1101677 #1101678 #1103342

#1112368 #1112397 #1112417 #1112421 #1112432

#1116686 #1118754 #1132666 #1136037

Cross- CVE-2016-9843 CVE-2018-3058 CVE-2018-3063

CVE-2018-3064 CVE-2018-3066 CVE-2018-3143

CVE-2018-3156 CVE-2018-3174 CVE-2018-3251

CVE-2018-3282 CVE-2019-2529 CVE-2019-2537

Affected Products:

SUSE OpenStack Cloud Crowbar 8

SUSE OpenStack Cloud 8

SUSE OpenStack Cloud 7

SUSE Linux Enterprise Server for SAP 12-SP2

SUSE Linux Enterprise Server 12-SP2-LTSS

SUSE Linux Enterprise Server 12-SP2-BCL

SUSE Linux Enterprise Server 12-SP1-LTSS

SUSE Enterprise Storage 4

HPE Helion Openstack 8

https://www.suse.com/security/cve/CVE-2016-9843.html

https://www.suse.com/security/c...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:2048-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here