Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
98

Red Hat 8.1 RHSA-2020-5660-01 Moderate: MariaDB Connector C Security

An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: mariadb-connector-c security, bug fix, and enhancement update Advisory ID: RHSA-2020:5660-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:5660 Issue date: 2020-12-22 CVE Names: CVE-2020-2574 CVE-2020-2752 CVE-2020-2922 CVE-2020-13249 ==================================================================== 1. Summary: An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v. 8.1) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The MariaDB Native Client library (C driver) is used to connect applications developed in C/C++ to MariaDB and MySQL databases. The following packages have been upgraded to a later upstream version: mariadb-connector-c (3.1.11). (BZ#1898996) Security Fix(es): * mysql: C API unspecified vulnerability (CPU Apr 2020) (CVE-2020-2752) * mysql: C API unspecified vulnerability (CPU Apr 2020) (CVE-2020-2922) * mariadb-connector-c: Improper validation of content in a OK packet received from server (CVE-2020-13249) * mysql: C API unspecified vulnerability (CPU Jan 2020) (CVE-2020-2574) For more details about the security issue(s), includingthe impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * Code utilizing plugins can't be compiled properly (BZ#1899003) * Add "zlib-devel" requirement in "-devel" subpackage (BZ#1899007) * Replace hard-coded /usr with %{_prefix} (BZ#1899101) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1798587 - CVE-2020-2574 mysql: C API unspecified vulnerability (CPU Jan 2020) 1835849 - CVE-2020-2752 mysql: C API unspecified vulnerability (CPU Apr 2020) 1835850 - CVE-2020-2922 mysql: C API unspecified vulnerability (CPU Apr 2020) 1839827 - CVE-2020-13249 mariadb-connector-c: Improper validation of content in a OK packet received from server 1898996 - Tracker: MariaDB Connector C rebase to the latest version (3.1.11) [rhel-8.1.0.z] 1899003 - Code utilizing plugins can´t be compiled properly [rhel-8.1.0.z] 1899101 - Replace hard-coded /usr with %{_prefix} [rhel-8.1.0.z] 6. Package List: Red Hat Enterprise Linux AppStream EUS (v.8.1): Source: mariadb-connector-c-3.1.11-2.el8_1.src.rpm aarch64: mariadb-connector-c-3.1.11-2.el8_1.aarch64.rpm mariadb-connector-c-debuginfo-3.1.11-2.el8_1.aarch64.rpm mariadb-connector-c-debugsource-3.1.11-2.el8_1.aarch64.rpm mariadb-connector-c-devel-3.1.11-2.el8_1.aarch64.rpm mariadb-connector-c-devel-debuginfo-3.1.11-2.el8_1.aarch64.rpm noarch: mariadb-connector-c-config-3.1.11-2.el8_1.noarch.rpm ppc64le: mariadb-connector-c-3.1.11-2.el8_1.ppc64le.rpm mariadb-connector-c-debuginfo-3.1.11-2.el8_1.ppc64le.rpm mariadb-connector-c-debugsource-3.1.11-2.el8_1.ppc64le.rpm mariadb-connector-c-devel-3.1.11-2.el8_1.ppc64le.rpm mariadb-connector-c-devel-debuginfo-3.1.11-2.el8_1.ppc64le.rpm s390x: mariadb-connector-c-3.1.11-2.el8_1.s390x.rpm mariadb-connector-c-debuginfo-3.1.11-2.el8_1.s390x.rpm mariadb-connector-c-debugsource-3.1.11-2.el8_1.s390x.rpm mariadb-connector-c-devel-3.1.11-2.el8_1.s390x.rpm mariadb-connector-c-devel-debuginfo-3.1.11-2.el8_1.s390x.rpm x86_64: mariadb-connector-c-3.1.11-2.el8_1.i686.rpm mariadb-connector-c-3.1.11-2.el8_1.x86_64.rpm mariadb-connector-c-debuginfo-3.1.11-2.el8_1.i686.rpm mariadb-connector-c-debuginfo-3.1.11-2.el8_1.x86_64.rpm mariadb-connector-c-debugsource-3.1.11-2.el8_1.i686.rpm mariadb-connector-c-debugsource-3.1.11-2.el8_1.x86_64.rpm mariadb-connector-c-devel-3.1.11-2.el8_1.i686.rpm mariadb-connector-c-devel-3.1.11-2.el8_1.x86_64.rpm mariadb-connector-c-devel-debuginfo-3.1.11-2.el8_1.i686.rpm mariadb-connector-c-devel-debuginfo-3.1.11-2.el8_1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2020-2574 https://access.redhat.com/security/cve/CVE-2020-2752 https://access.redhat.com/security/cve/CVE-2020-2922 https://access.redhat.com/security/cve/CVE-2020-13249 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . Morecontact details at https://access.redhat.com/security/team/contact Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBX+G5ntzjgjWX9erEAQi2RQ/8CSkiThgAcxhXc3GKGiBVae48Ur9GN4Mo Wrhh0MerPIIS/uDpG+ZcmkbLQvchW3JLcIdorHCNusXPdKK/CIsjO+RMq9iUZ02l ilQ3tVtKFtYsJcnF8EIRAK9w1iVwKaxyHJiyr5zPSvNpJMoGKPVAsFXIuQiSVFnP r8LR+W+DwIU8UW4qQXcREJ1yCvZnkv3per3B0spu1tNnMDQWNqAl4ip/fOiBDhI4 Y/Kn37/ZKoSa7y5QqDdRuE3jmoTPOKYMO1RWux2SVCR/SxbGpC35fX0znrZ1eG85 oCiAy698B/GJltQirbHNqdUD0ok87SgRz5w8VGfYVoGOgHBoOLNr2NKn2lmKeiqE 7UJXi3AglIOeXxl+I655U7MAcOzJyu1BIWO1nXCfHalM61okVIX23sHlBVzFHU/N CDCxymnlu0AEzOdrJWOsBo4/dhHbrMnvfpVjK9HUltxpDxu4TSXTILs32pd6xRys YdI+5ClR/AjMPxf55kk/3+mPt06jD3T95rL7nrxqXZdM7hvB18qFw8ZZQfBKd7H0 JrayplKChoBzfm43OMxjybT3F88cIc3RS2LRfyhWReoxysDc+cn8pUlg9WgYm6tP Etxth2Vj7OY5+bBT+vPH5K1NA2LFhB8tBJWK4FzS1ZovTdlPJjuWdbxRYp5BLIhX 0XRmk7zwv44=KL/0 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Security notice for mariadb-connector-c on Red Hat Enterprise Linux 8.1 regarding urgent patches.. MariaDB Connector, Red Hat EUS, Security Advisory, bug fix, update. . LinuxSecurity.com Team

Calendar 2 Dec 22, 2020 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here