Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Important: galera and mariadb11.8 security, bug fix, and enhancement update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:33412", "synopsis": "Important: galera and mariadb11.8 security, bug fix, and enhancement update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for galera.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "MariaDB is a community developed fork from MySQL - a multi-user, multi-threaded SQL database server. It is a client/server implementation consisting of a server daemon (mariadbd) and many different client programs and libraries. The base package contains the standard MariaDB/MySQL client programs and utilities.\n\nSecurity Fix(es):\n\n* mariadb: MariaDB Server: Arbitrary code execution via wsrep_notify_cmd (CVE-2026-49261)\n\nBug Fix(es) and Enhancement(s):\n\n* Rebase MariaDB 11.8 to 11.8.8 in Rocky Linux10 (JIRA:Rocky Linux-183084)\n\n* Rebase Galera to 26.4.27 in Rocky Linux10 (JIRA:Rocky Linux-183259)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2488450", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488450", "description": ""}, {"ticket": "2488453", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488453", "description": ""}, {"ticket": "2488458", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488458", "description": ""}, {"ticket": "2488459", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488459", "description": ""}, {"ticket": "2488451", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2488451", "description": ""}, {"ticket": "2488460", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488460", "description": ""}, {"ticket": "2488467", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488467", "description": ""}, {"ticket": "2488454", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2488454", "description": ""}, {"ticket": "2487957", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2487957", "description": ""}], "cves": [{"name": "CVE-2026-44168", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44168", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H", "cvss3BaseScore": "8.0", "cwe": "CWE-78"}, {"name": "CVE-2026-44169", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44169", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N", "cvss3BaseScore": "4.3", "cwe": "CWE-266"}, {"name": "CVE-2026-44170", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44170", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H", "cvss3BaseScore": "9.9", "cwe": "CWE-78"}, {"name": "CVE-2026-44171", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44171", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:H", "cvss3BaseScore": "5.8", "cwe": "CWE-22"}, {"name": "CVE-2026-44172", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44172", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "9.1", "cwe": "CWE-89"}, {"name": "CVE-2026-44173", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-44173", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H", "cvss3BaseScore": "8.1","cwe": "CWE-266"}, {"name": "CVE-2026-48163", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-48163", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H", "cvss3BaseScore": "9.1", "cwe": "CWE-78"}, {"name": "CVE-2026-48165", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-48165", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H", "cvss3BaseScore": "9.1", "cwe": "CWE-78"}, {"name": "CVE-2026-49261", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-49261", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H", "cvss3BaseScore": "9.0", "cwe": "CWE-78"}], "references": [], "publishedAt": "2026-07-05T12:05:09.130757Z", "rpms": {"Rocky Linux 10": {"nvras": ["galera-debuginfo-0:26.4.27-1.el10_2.x86_64.rpm", "galera-0:26.4.27-1.el10_2.src.rpm", "galera-debugsource-0:26.4.27-1.el10_2.aarch64.rpm", "galera-debugsource-0:26.4.27-1.el10_2.x86_64.rpm", "galera-0:26.4.27-1.el10_2.x86_64.rpm", "galera-debugsource-0:26.4.27-1.el10_2.ppc64le.rpm", "galera-0:26.4.27-1.el10_2.aarch64.rpm", "galera-debuginfo-0:26.4.27-1.el10_2.ppc64le.rpm", "galera-debuginfo-0:26.4.27-1.el10_2.aarch64.rpm", "galera-debuginfo-0:26.4.27-1.el10_2.s390x.rpm", "galera-debugsource-0:26.4.27-1.el10_2.s390x.rpm", "galera-0:26.4.27-1.el10_2.ppc64le.rpm", "galera-0:26.4.27-1.el10_2.s390x.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important updates for Rocky Linux's galera and mariadb11.8 enhance security and fix critical issues. Stay updated!. Rocky Linux, galera, mariadb, security updates, code execution. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-19584 http://linux.oracle.com/errata/ELSA-2025-19584.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: galera-26.4.22-1.el9_6.x86_64.rpm mariadb-10.5.29-2.el9_6.x86_64.rpm mariadb-backup-10.5.29-2.el9_6.x86_64.rpm mariadb-common-10.5.29-2.el9_6.x86_64.rpm mariadb-devel-10.5.29-2.el9_6.x86_64.rpm mariadb-embedded-10.5.29-2.el9_6.x86_64.rpm mariadb-embedded-devel-10.5.29-2.el9_6.x86_64.rpm mariadb-errmsg-10.5.29-2.el9_6.x86_64.rpm mariadb-gssapi-server-10.5.29-2.el9_6.x86_64.rpm mariadb-oqgraph-engine-10.5.29-2.el9_6.x86_64.rpm mariadb-pam-10.5.29-2.el9_6.x86_64.rpm mariadb-server-10.5.29-2.el9_6.x86_64.rpm mariadb-server-galera-10.5.29-2.el9_6.x86_64.rpm mariadb-server-utils-10.5.29-2.el9_6.x86_64.rpm mariadb-test-10.5.29-2.el9_6.x86_64.rpm aarch64: galera-26.4.22-1.el9_6.aarch64.rpm mariadb-10.5.29-2.el9_6.aarch64.rpm mariadb-backup-10.5.29-2.el9_6.aarch64.rpm mariadb-common-10.5.29-2.el9_6.aarch64.rpm mariadb-devel-10.5.29-2.el9_6.aarch64.rpm mariadb-embedded-10.5.29-2.el9_6.aarch64.rpm mariadb-embedded-devel-10.5.29-2.el9_6.aarch64.rpm mariadb-errmsg-10.5.29-2.el9_6.aarch64.rpm mariadb-gssapi-server-10.5.29-2.el9_6.aarch64.rpm mariadb-oqgraph-engine-10.5.29-2.el9_6.aarch64.rpm mariadb-pam-10.5.29-2.el9_6.aarch64.rpm mariadb-server-10.5.29-2.el9_6.aarch64.rpm mariadb-server-galera-10.5.29-2.el9_6.aarch64.rpm mariadb-server-utils-10.5.29-2.el9_6.aarch64.rpm mariadb-test-10.5.29-2.el9_6.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/galera-26.4.22-1.el9_6.src.rpm http://oss.oracle.com/ol9/SRPMS-updates/mariadb-10.5.29-2.el9_6.src.rpm Related CVEs: CVE-2023-52969 CVE-2023-52970 CVE-2025-21490 CVE-2025-30693 CVE-2025-30722 Description of changes: mariadb [3:10.5.29-2] - Release bump for rebuild [3:10.5.29-1] - Rebase to 10.5.29 _______________________________________________ El-erratamailing list
Moderate: galera and mariadb security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2025:19584", "synopsis": "Moderate: galera and mariadb security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for galera, mariadb.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/mariadb-corporation/wsrep-API repository. For a description of Galera replication engine see https://mariadb.com/products/enterprise/galera-cluster/ web.\n\nSecurity Fix(es):\n\n* mysql: High Privilege Denial of Service Vulnerability in MySQL Server (CVE-2025-21490)\n\n* mariadb: MariaDB Server Crash Due to Empty Backtrace Log (CVE-2023-52969)\n\n* mariadb: MariaDB Server Crash via Item_direct_view_ref (CVE-2023-52970)\n\n* mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)\n\n* mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30693)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2339221", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339221", "description": ""}, {"ticket": "2350916", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2350916", "description": ""}, {"ticket": "2350918", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2350918", "description": ""}, {"ticket": "2359885", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2359885", "description": ""},{"ticket": "2359963", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2359963", "description": ""}], "cves": [{"name": "CVE-2023-52969", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52969", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": "CWE-1038"}, {"name": "CVE-2023-52970", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52970", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": "CWE-1038"}, {"name": "CVE-2025-21490", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21490", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": "CWE-404"}, {"name": "CVE-2025-30693", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-30693", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H", "cvss3BaseScore": "5.5", "cwe": null}, {"name": "CVE-2025-30722", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-30722", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N", "cvss3BaseScore": "5.9", "cwe": null}], "references": [], "publishedAt": "2025-11-06T09:06:00.631395Z", "rpms": {"Rocky Linux 9": {"nvras": ["galera-0:26.4.22-1.el9_6.aarch64.rpm", "galera-0:26.4.22-1.el9_6.ppc64le.rpm", "galera-0:26.4.22-1.el9_6.s390x.rpm", "galera-0:26.4.22-1.el9_6.src.rpm", "galera-0:26.4.22-1.el9_6.x86_64.rpm", "galera-debuginfo-0:26.4.22-1.el9_6.aarch64.rpm", "galera-debuginfo-0:26.4.22-1.el9_6.ppc64le.rpm", "galera-debuginfo-0:26.4.22-1.el9_6.s390x.rpm", "galera-debuginfo-0:26.4.22-1.el9_6.x86_64.rpm", "galera-debugsource-0:26.4.22-1.el9_6.aarch64.rpm", "galera-debugsource-0:26.4.22-1.el9_6.ppc64le.rpm", "galera-debugsource-0:26.4.22-1.el9_6.s390x.rpm", "galera-debugsource-0:26.4.22-1.el9_6.x86_64.rpm", "mariadb-3:10.5.29-2.el9_6.aarch64.rpm","mariadb-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-3:10.5.29-2.el9_6.src.rpm", "mariadb-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-backup-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-backup-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-backup-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-backup-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-backup-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-backup-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-backup-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-backup-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-common-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-common-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-common-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-common-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-debugsource-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-debugsource-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-debugsource-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-debugsource-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-devel-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-devel-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-devel-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-devel-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-embedded-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-embedded-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-embedded-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-embedded-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-embedded-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-embedded-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-embedded-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-embedded-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-embedded-devel-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-embedded-devel-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-embedded-devel-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-embedded-devel-3:10.5.29-2.el9_6.x86_64.rpm","mariadb-errmsg-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-errmsg-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-errmsg-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-errmsg-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-gssapi-server-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-gssapi-server-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-gssapi-server-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-gssapi-server-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-gssapi-server-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-gssapi-server-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-gssapi-server-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-gssapi-server-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-oqgraph-engine-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-oqgraph-engine-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-oqgraph-engine-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-oqgraph-engine-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-oqgraph-engine-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-oqgraph-engine-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-oqgraph-engine-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-oqgraph-engine-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-pam-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-pam-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-pam-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-pam-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-pam-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-pam-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-pam-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-pam-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-server-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-server-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-server-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-server-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-server-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-server-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-server-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-server-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-server-galera-3:10.5.29-2.el9_6.aarch64.rpm","mariadb-server-galera-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-server-galera-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-server-galera-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-server-utils-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-server-utils-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-server-utils-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-server-utils-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-server-utils-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-server-utils-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-server-utils-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-server-utils-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-test-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-test-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-test-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-test-3:10.5.29-2.el9_6.x86_64.rpm", "mariadb-test-debuginfo-3:10.5.29-2.el9_6.aarch64.rpm", "mariadb-test-debuginfo-3:10.5.29-2.el9_6.ppc64le.rpm", "mariadb-test-debuginfo-3:10.5.29-2.el9_6.s390x.rpm", "mariadb-test-debuginfo-3:10.5.29-2.el9_6.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A security advisory for Rocky Linux 9 covering moderate updates for galera and mariadb against several issues.. Rocky Linux, galera update, mariadb security, moderate vulnerabilities, linux security patch. . LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-0914 http://linux.oracle.com/errata/ELSA-2025-0914.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: galera-26.4.20-1.0.1.el9_5.x86_64.rpm mariadb-10.5.27-1.el9_5.x86_64.rpm mariadb-backup-10.5.27-1.el9_5.x86_64.rpm mariadb-common-10.5.27-1.el9_5.x86_64.rpm mariadb-embedded-10.5.27-1.el9_5.x86_64.rpm mariadb-errmsg-10.5.27-1.el9_5.x86_64.rpm mariadb-gssapi-server-10.5.27-1.el9_5.x86_64.rpm mariadb-oqgraph-engine-10.5.27-1.el9_5.x86_64.rpm mariadb-pam-10.5.27-1.el9_5.x86_64.rpm mariadb-server-10.5.27-1.el9_5.x86_64.rpm mariadb-server-galera-10.5.27-1.el9_5.x86_64.rpm mariadb-server-utils-10.5.27-1.el9_5.x86_64.rpm mariadb-devel-10.5.27-1.el9_5.x86_64.rpm mariadb-embedded-devel-10.5.27-1.el9_5.x86_64.rpm mariadb-test-10.5.27-1.el9_5.x86_64.rpm aarch64: galera-26.4.20-1.0.1.el9_5.aarch64.rpm mariadb-10.5.27-1.el9_5.aarch64.rpm mariadb-backup-10.5.27-1.el9_5.aarch64.rpm mariadb-common-10.5.27-1.el9_5.aarch64.rpm mariadb-embedded-10.5.27-1.el9_5.aarch64.rpm mariadb-errmsg-10.5.27-1.el9_5.aarch64.rpm mariadb-gssapi-server-10.5.27-1.el9_5.aarch64.rpm mariadb-oqgraph-engine-10.5.27-1.el9_5.aarch64.rpm mariadb-pam-10.5.27-1.el9_5.aarch64.rpm mariadb-server-10.5.27-1.el9_5.aarch64.rpm mariadb-server-galera-10.5.27-1.el9_5.aarch64.rpm mariadb-server-utils-10.5.27-1.el9_5.aarch64.rpm mariadb-devel-10.5.27-1.el9_5.aarch64.rpm mariadb-embedded-devel-10.5.27-1.el9_5.aarch64.rpm mariadb-test-10.5.27-1.el9_5.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//galera-26.4.20-1.0.1.el9_5.src.rpm http://oss.oracle.com/ol9/SRPMS-updates//mariadb-10.5.27-1.el9_5.src.rpm Related CVEs: CVE-2023-22084 CVE-2024-21096 Description of changes: galera [26.4.20-1.0.1] - Drop nmap-ncat requirement. [Orabug: 34116228] - Requirement to delete lp1184034 test case without using patches. [26.4.20-1] - Rebase to26.4.20 [26.4.19-1] - Rebase to 26.4.19 [26.4.18-1] - Rebase to 26.4.18 mariadb [3:10.5.27-1] - Rebase to 10.5.27 [3:10.5.26-1] - Rebase to 10.5.26 [3:10.5.22-1] - Rebase to 10.5.22 [3:10.5.21-1] - Rebase to version 10.5.21 [3:10.5.20-2] - Use _fortify_level to disable fortification in debug builds [3:10.5.20-1] - Rebase to version 10.5.20 _______________________________________________ El-errata mailing list
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-0912 http://linux.oracle.com/errata/ELSA-2025-0912.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: galera-26.4.20-1.0.1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-backup-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-common-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-devel-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-embedded-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-embedded-devel-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-errmsg-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-gssapi-server-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-oqgraph-engine-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-pam-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-server-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-server-galera-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-server-utils-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm mariadb-test-10.11.10-1.module+el9.5.0+90507+82ceef20.x86_64.rpm aarch64: galera-26.4.20-1.0.1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-backup-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-common-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-devel-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-embedded-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-embedded-devel-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-errmsg-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-gssapi-server-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-oqgraph-engine-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-pam-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-server-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-server-galera-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-server-utils-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm mariadb-test-10.11.10-1.module+el9.5.0+90507+82ceef20.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//galera-26.4.20-1.0.1.module+el9.5.0+90507+82ceef20.src.rpm http://oss.oracle.com/ol9/SRPMS-updates//mariadb-10.11.10-1.module+el9.5.0+90507+82ceef20.src.rpm Related CVEs: CVE-2024-21096 Description of changes: galera [26.4.20-1.0.1] - Drop nmap-ncat requirement. [Orabug: 34116228] - Requirement to delete garbd-wrapper script and lp1184034 test case without using patches. [Orabug: 34116228] [26.4.20-1] - Rebase to 26.4.20 [26.4.19-1] - Rebase to 26.4.19 [26.4.18-1] - Rebase to 26.4.18 mariadb [3:10.11.10-1] - Rebase to 10.11.10 [3:10.11.9-1] - Rebase to 10.11.9 _______________________________________________ El-errata mailing list
MariaDB 10.5.25 & Galera 26.4.18 Release notes: https://mariadb.com/docs/release-notes/community-server/old-releases/mariadb-10-5-series/mariadb-10-5-25-release-notes. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-d61bffd77f 2024-06-18 01:14:08.230209 -------------------------------------------------------------------------------- Name : mariadb Product : Fedora 39 Version : 10.5.25 Release : 1.fc39 URL : http://mariadb.org Summary : A very fast and robust SQL database server Description : MariaDB is a community developed fork from MySQL - a multi-user, multi-threaded SQL database server. It is a client/server implementation consisting of a server daemon (mariadbd) and many different client programs and libraries. The base package contains the standard MariaDB/MySQL client programs and utilities. -------------------------------------------------------------------------------- Update Information: MariaDB 10.5.25 & Galera 26.4.18 Release notes: https://mariadb.com/docs/release-notes/community-server/old-releases/mariadb-10-5-series/mariadb-10-5-25-release-notes -------------------------------------------------------------------------------- ChangeLog: * Sun Jun 9 2024 Michal Schorm - 3:10.5.25-1 - Rebase to 10.5.25 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2282489 - CVE-2024-21096 mariadb: mysql: Client: mysqldump unspecified vulnerability (CPU Apr 2024) [fedora-39] https://bugzilla.redhat.com/show_bug.cgi?id=2282489 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d61bffd77f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages aresigned with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
MariaDB 10.5.25 & Galera 26.4.18 Release notes: https://mariadb.com/docs/release-notes/community-server/old-releases/mariadb-10-5-series/mariadb-10-5-25-release-notes. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-d61bffd77f 2024-06-18 01:14:08.230209 -------------------------------------------------------------------------------- Name : galera Product : Fedora 39 Version : 26.4.18 Release : 1.fc39 URL : https://mariadb.com/products/enterprise/galera-cluster/ Summary : Synchronous multi-master wsrep provider (replication engine) Description : Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/mariadb-corporation/wsrep-API repository. For a description of Galera replication engine see https://mariadb.com/products/enterprise/galera-cluster/ web. -------------------------------------------------------------------------------- Update Information: MariaDB 10.5.25 & Galera 26.4.18 Release notes: https://mariadb.com/docs/release-notes/community-server/old-releases/mariadb-10-5-series/mariadb-10-5-25-release-notes -------------------------------------------------------------------------------- ChangeLog: * Fri Jun 7 2024 Michal Schorm - 26.4.18-1 - Rebase to 26.4.18 * Wed Jan 24 2024 Michal Schorm - 26.4.16-4 - Rebuild * Fri Jan 19 2024 Fedora Release Engineering - 26.4.16-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Thu Jan 18 2024 Jonathan Wakely - 26.4.16-2 - Rebuilt for Boost 1.83 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2282489 - CVE-2024-21096 mariadb: mysql: Client: mysqldump unspecified vulnerability (CPU Apr 2024) [fedora-39] https://bugzilla.redhat.com/show_bug.cgi?id=2282489 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d61bffd77f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
new version: 26.4.16, fixes CVE-2023-22084 (mga#32574) References: - https://bugs.mageia.org/show_bug.cgi?id=32574 - https://lists.fedoraproject.org/archives/list/
Get the latest Linux and open source security news straight to your inbox.