Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE OpenStack Cloud 7: Important Security Update for MariaDB Fixed Issues

suse
Calendar Grey March 31, 2020
Dist Suse Esm H88
Critical vulnerability patch for SUSE OpenStack Cloud 7 resolving various mariadb problems. Ensure your system remains protected!
An update that fixes 9 vulnerabilities is now available

Summary

This update for mariadb to version 10.2.31 GA fixes the following issues: MariaDB was updated to version 10.2.31 GA (bsc#1162388 and bsc#1156669). Security issues fixed: - CVE-2020-2574: Fixed a difficult to exploit vulnerability that allowed an attacker to crash the client (bsc#1162388). - CVE-2019-18901: Fixed an unsafe path handling behavior in mysql-systemd-helper (bsc#1160895). - CVE-2019-2737: Fixed an issue where could lead a remote attacker to cause denial of service - CVE-2019-2938: Fixed an issue where could lead a remote attacker to cause denial of service - CVE-2019-2740: Fixed an issue where could lead a local attacker to cause denial of service - CVE-2019-2805: Fixed an issue where could lead a local attacker to cause denial of service

References

#1077717 #1156669 #1160878 #1160883 #1160895

#1160912 #1162388

Cross- CVE-2019-18901 CVE-2019-2737 CVE-2019-2739

CVE-2019-2740 CVE-2019-2758 CVE-2019-2805

CVE-2019-2938 CVE-2019-2974 CVE-2020-2574

Affected Products:

SUSE OpenStack Cloud 7

https://www.suse.com/security/cve/CVE-2019-18901.html

https://www.suse.com/security/cve/CVE-2019-2737.html

https://www.suse.com/security/cve/CVE-2019-2739.html

https://www.suse.com/security/cve/CVE-2019-2740.html

https://www.suse.com/security/cve/CVE-2019-2758.html

https://www.suse.com/security/cve/CVE-2019-2805.html

https://www.suse.com/security/cve/CVE-2019-2938.html

https://www.suse.com/security/cve/CVE-2019-2974.html

https://www.suse.com/security/cve/CVE-2020-2574.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:0831-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here