Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Important: mysql:8.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2025:1673", "synopsis": "Important: mysql:8.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for module.mecab, mecab-ipadic, module.mysql, module.mecab-ipadic, mysql, mecab.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.\n\nSecurity Fix(es):\n\n* openssl: SSL_select_next_proto buffer overread (CVE-2024-5535)\n\n* krb5: GSS message token handling (CVE-2024-37371)\n\n* curl: libcurl: ASN.1 date parser overread (CVE-2024-7264)\n\n* mysql: Thread Pooling unspecified vulnerability (CPU Oct 2024) (CVE-2024-21238)\n\n* mysql: X Plugin unspecified vulnerability (CPU Oct 2024) (CVE-2024-21196)\n\n* mysql: Optimizer unspecified vulnerability (CPU Oct 2024) (CVE-2024-21241)\n\n* mysql: Client programs unspecified vulnerability (CPU Oct 2024) (CVE-2024-21231)\n\n* mysql: Information Schema unspecified vulnerability (CPU Oct 2024) (CVE-2024-21197)\n\n* mysql: InnoDB unspecified vulnerability (CPU Oct 2024) (CVE-2024-21218)\n\n* mysql: Optimizer unspecified vulnerability (CPU Oct 2024) (CVE-2024-21201)\n\n* mysql: InnoDB unspecified vulnerability (CPU Oct 2024) (CVE-2024-21236)\n\n* mysql: Group Replication GCS unspecified vulnerability (CPU Oct 2024) (CVE-2024-21237)\n\n* mysql: FTS unspecified vulnerability (CPU Oct 2024) (CVE-2024-21203)\n\n* mysql: Health Monitor unspecified vulnerability (CPU Oct 2024) (CVE-2024-21212)\n\n* mysql: DML unspecified vulnerability (CPU Oct 2024) (CVE-2024-21219)\n\n* mysql: Optimizer unspecified vulnerability (CPU Oct 2024) (CVE-2024-21230)\n\n* mysql: InnoDB unspecified vulnerability (CPU Oct 2024) (CVE-2024-21213)\n\n* mysql: InnoDB unspecifiedvulnerability (CPU Oct 2024) (CVE-2024-21194)\n\n* mysql: InnoDB unspecified vulnerability (CPU Oct 2024) (CVE-2024-21199)\n\n* mysql: PS unspecified vulnerability (CPU Oct 2024) (CVE-2024-21193)\n\n* mysql: DDL unspecified vulnerability (CPU Oct 2024) (CVE-2024-21198)\n\n* mysql: mysqldump unspecified vulnerability (CPU Oct 2024) (CVE-2024-21247)\n\n* mysql: InnoDB unspecified vulnerability (CPU Oct 2024) (CVE-2024-21239)\n\n* curl: curl netrc password leak (CVE-2024-11053)\n\n* mysql: InnoDB unspecified vulnerability (CPU Jan 2025) (CVE-2025-21497)\n\n* mysql: MySQL Server Options Vulnerability (CVE-2025-21520)\n\n* mysql: High Privilege Denial of Service Vulnerability in MySQL Server (CVE-2025-21490)\n\n* mysql: Information Schema unspecified vulnerability (CPU Jan 2025) (CVE-2025-21529)\n\n* mysql: InnoDB unspecified vulnerability (CPU Jan 2025) (CVE-2025-21531)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2025) (CVE-2025-21504)\n\n* mysql: Privileges unspecified vulnerability (CPU Jan 2025) (CVE-2025-21540)\n\n* mysql: MySQL Server InnoDB Denial of Service and Unauthorized Data Modification Vulnerability (CVE-2025-21555)\n\n* mysql: Packaging unspecified vulnerability (CPU Jan 2025) (CVE-2025-21543)\n\n* mysql: MySQL Server InnoDB Denial of Service and Unauthorized Data Modification Vulnerability (CVE-2025-21491)\n\n* mysql: DDL unspecified vulnerability (CPU Jan 2025) (CVE-2025-21525)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2025) (CVE-2025-21536)\n\n* mysql: Thread Pooling unspecified vulnerability (CPU Jan 2025) (CVE-2025-21521)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2025) (CVE-2025-21501)\n\n* mysql: Performance Schema unspecified vulnerability (CPU Jan 2025) (CVE-2025-21534)\n\n* mysql: Privileges unspecified vulnerability (CPU Jan 2025) (CVE-2025-21494)\n\n* mysql: Privileges unspecified vulnerability (CPU Jan 2025) (CVE-2025-21519)\n\n* mysql: Parser unspecified vulnerability (CPU Jan 2025) (CVE-2025-21522)\n\n* mysql: InnoDB unspecified vulnerability(CPU Jan 2025) (CVE-2025-21503)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2025) (CVE-2025-21518)\n\n* mysql: MySQL Server InnoDB Denial of Service and Unauthorized Data Modification Vulnerability (CVE-2025-21559)\n\n* mysql: Privilege Misuse in MySQL Server Security Component (CVE-2025-21546)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2025) (CVE-2025-21500)\n\n* mysql: InnoDB unspecified vulnerability (CPU Jan 2025) (CVE-2025-21523)\n\n* mysql: Components Services unspecified vulnerability (CPU Jan 2025) (CVE-2025-21505)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2294581", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2294581", "description": ""}, {"ticket": "2294676", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2294676", "description": ""}, {"ticket": "2301888", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2301888", "description": ""}, {"ticket": "2318857", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318857", "description": ""}, {"ticket": "2318858", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318858", "description": ""}, {"ticket": "2318870", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318870", "description": ""}, {"ticket": "2318873", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318873", "description": ""}, {"ticket": "2318874", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318874", "description": ""}, {"ticket": "2318876", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318876", "description": ""}, {"ticket": "2318882","sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318882", "description": ""}, {"ticket": "2318883", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318883", "description": ""}, {"ticket": "2318884", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318884", "description": ""}, {"ticket": "2318885", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318885", "description": ""}, {"ticket": "2318886", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318886", "description": ""}, {"ticket": "2318897", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318897", "description": ""}, {"ticket": "2318900", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318900", "description": ""}, {"ticket": "2318905", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318905", "description": ""}, {"ticket": "2318914", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318914", "description": ""}, {"ticket": "2318922", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318922", "description": ""}, {"ticket": "2318923", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318923", "description": ""}, {"ticket": "2318925", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318925", "description": ""}, {"ticket": "2318926", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318926", "description": ""}, {"ticket": "2318927", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2318927", "description": ""}, {"ticket": "2331191", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2331191", "description": ""}, {"ticket": "2339218", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2339218", "description": ""}, {"ticket": "2339220", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339220", "description": ""}, {"ticket": "2339221", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339221", "description": ""}, {"ticket": "2339226", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339226", "description": ""}, {"ticket": "2339231", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339231", "description": ""}, {"ticket": "2339236", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339236", "description": ""}, {"ticket": "2339238", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339238", "description": ""}, {"ticket": "2339243", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339243", "description": ""}, {"ticket": "2339247", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339247", "description": ""}, {"ticket": "2339252", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339252", "description": ""}, {"ticket": "2339259", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339259", "description": ""}, {"ticket": "2339266", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339266", "description": ""}, {"ticket": "2339270", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339270", "description": ""}, {"ticket": "2339271", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339271", "description": ""}, {"ticket": "2339275", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339275", "description": ""}, {"ticket": "2339277", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2339277", "description": ""}, {"ticket": "2339281", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339281", "description": ""}, {"ticket": "2339284", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339284", "description": ""}, {"ticket": "2339291", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339291", "description": ""}, {"ticket": "2339293", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339293", "description": ""}, {"ticket": "2339295", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339295", "description": ""}, {"ticket": "2339299", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339299", "description": ""}, {"ticket": "2339300", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339300", "description": ""}, {"ticket": "2339304", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339304", "description": ""}, {"ticket": "2339305", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2339305", "description": ""}], "cves": [{"name": "CVE-2024-11053", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-11053", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21193", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21193", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21194", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21194", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21196", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21196", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN","cwe": "UNKNOWN"}, {"name": "CVE-2024-21197", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21197", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21198", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21198", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21199", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21199", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21201", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21201", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21203", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21203", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21212", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21212", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21213", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21213", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21218", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21218", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21219", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21219", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21230", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21230", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21231", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2024-21231", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21236", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21236", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21237", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21237", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21238", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21238", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21239", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21239", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21241", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21241", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-21247", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-21247", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-37371", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-37371", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-5535", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-5535", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-7264", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-7264", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21490", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21490", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore":"UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21491", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21491", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21494", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21494", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21497", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21497", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21500", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21500", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21501", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21501", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21503", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21503", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21504", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21504", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21505", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21505", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21518", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21518", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21519", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21519", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21520", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2025-21520", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21521", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21521", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21522", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21522", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21523", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21523", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21525", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21525", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21529", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21529", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21531", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21531", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21534", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21534", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21536", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21536", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21540", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21540", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21543", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21543", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore":"UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21546", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21546", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21555", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21555", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2025-21559", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-21559", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2025-02-26T19:09:52.852483Z", "rpms": {"Rocky Linux 8": {"nvras": ["mecab-0:0.996-2.module+el8.10.0+1676+9b4b6e24.aarch64.rpm", "mecab-0:0.996-2.module+el8.10.0+1676+9b4b6e24.src.rpm", "mecab-0:0.996-2.module+el8.10.0+1676+9b4b6e24.x86_64.rpm", "mecab-debuginfo-0:0.996-2.module+el8.10.0+1676+9b4b6e24.aarch64.rpm", "mecab-debuginfo-0:0.996-2.module+el8.10.0+1676+9b4b6e24.x86_64.rpm", "mecab-debugsource-0:0.996-2.module+el8.10.0+1676+9b4b6e24.aarch64.rpm", "mecab-debugsource-0:0.996-2.module+el8.10.0+1676+9b4b6e24.x86_64.rpm", "mecab-devel-0:0.996-2.module+el8.10.0+1676+9b4b6e24.aarch64.rpm", "mecab-devel-0:0.996-2.module+el8.10.0+1676+9b4b6e24.x86_64.rpm", "mecab-ipadic-0:2.7.0.20070801-17.module+el8.10.0+1937+28fbbc83.aarch64.rpm", "mecab-ipadic-0:2.7.0.20070801-17.module+el8.10.0+1937+28fbbc83.src.rpm", "mecab-ipadic-0:2.7.0.20070801-17.module+el8.10.0+1937+28fbbc83.x86_64.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-17.module+el8.10.0+1937+28fbbc83.aarch64.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-17.module+el8.10.0+1937+28fbbc83.x86_64.rpm", "mysql-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.src.rpm", "mysql-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-common-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-common-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm","mysql-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-debugsource-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-debugsource-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-devel-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-devel-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-devel-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-devel-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-errmsg-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-errmsg-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-libs-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-libs-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-libs-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-libs-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-server-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-server-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-server-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-server-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-test-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-test-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm", "mysql-test-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.aarch64.rpm", "mysql-test-debuginfo-0:8.0.41-1.module+el8.10.0+1937+28fbbc83.0.1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Rocky Linux administrators should enhance security measures to mitigate PostgreSQL weaknesses and guarantee system protection.. mysql security, Rocky Linux update, database threats. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-1673 http://linux.oracle.com/errata/ELSA-2025-1673.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: mecab-0.996-2.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mecab-devel-0.996-2.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mecab-ipadic-EUCJP-2.7.0.20070801-17.0.1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-common-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-devel-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-errmsg-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-libs-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-server-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm mysql-test-8.0.41-1.module+el8.10.0+90521+d5cc5c65.x86_64.rpm aarch64: mecab-0.996-2.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mecab-devel-0.996-2.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mecab-ipadic-EUCJP-2.7.0.20070801-17.0.1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-common-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-devel-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-errmsg-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-libs-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-server-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm mysql-test-8.0.41-1.module+el8.10.0+90521+d5cc5c65.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//mecab-0.996-2.module+el8.10.0+90521+d5cc5c65.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90521+d5cc5c65.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//mysql-8.0.41-1.module+el8.10.0+90521+d5cc5c65.src.rpm RelatedCVEs: CVE-2024-5535 CVE-2024-7264 CVE-2024-11053 CVE-2024-21193 CVE-2024-21194 CVE-2024-21196 CVE-2024-21197 CVE-2024-21198 CVE-2024-21199 CVE-2024-21201 CVE-2024-21203 CVE-2024-21212 CVE-2024-21213 CVE-2024-21218 CVE-2024-21219 CVE-2024-21230 CVE-2024-21231 CVE-2024-21236 CVE-2024-21237 CVE-2024-21238 CVE-2024-21239 CVE-2024-21241 CVE-2024-21247 CVE-2024-37371 CVE-2025-21490 CVE-2025-21491 CVE-2025-21494 CVE-2025-21497 CVE-2025-21500 CVE-2025-21501 CVE-2025-21503 CVE-2025-21504 CVE-2025-21505 CVE-2025-21518 CVE-2025-21519 CVE-2025-21520 CVE-2025-21521 CVE-2025-21522 CVE-2025-21523 CVE-2025-21525 CVE-2025-21529 CVE-2025-21531 CVE-2025-21534 CVE-2025-21536 CVE-2025-21540 CVE-2025-21543 CVE-2025-21546 CVE-2025-21555 CVE-2025-21559 Description of changes: mecab [0.996-2.12] - Bump version for 'mysql' module rebuild We are moving the 'mecab-devel' RPM from the 'buildroot' repo to the 'AppStream' repo - Resolves: #2180411 mecab-ipadic [2.7.0.20070801-17.0.1] - Rename the LICENSE.Fedora to LICENSE.oracle [2.7.0.20070801-17] - Bump the release - Resolves: RHEL-24525 mysql [8.0.41-1] - Update to MySQL 8.0.41 _______________________________________________ El-errata mailing list
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-1671 http://linux.oracle.com/errata/ELSA-2025-1671.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: mysql-8.0.41-2.el9_5.x86_64.rpm mysql-common-8.0.41-2.el9_5.x86_64.rpm mysql-errmsg-8.0.41-2.el9_5.x86_64.rpm mysql-server-8.0.41-2.el9_5.x86_64.rpm mysql-devel-8.0.41-2.el9_5.x86_64.rpm mysql-libs-8.0.41-2.el9_5.x86_64.rpm mysql-test-8.0.41-2.el9_5.x86_64.rpm aarch64: mysql-8.0.41-2.el9_5.aarch64.rpm mysql-common-8.0.41-2.el9_5.aarch64.rpm mysql-errmsg-8.0.41-2.el9_5.aarch64.rpm mysql-server-8.0.41-2.el9_5.aarch64.rpm mysql-devel-8.0.41-2.el9_5.aarch64.rpm mysql-libs-8.0.41-2.el9_5.aarch64.rpm mysql-test-8.0.41-2.el9_5.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//mysql-8.0.41-2.el9_5.src.rpm Related CVEs: CVE-2024-5535 CVE-2024-7264 CVE-2024-11053 CVE-2024-21193 CVE-2024-21194 CVE-2024-21196 CVE-2024-21197 CVE-2024-21198 CVE-2024-21199 CVE-2024-21201 CVE-2024-21203 CVE-2024-21212 CVE-2024-21213 CVE-2024-21218 CVE-2024-21219 CVE-2024-21230 CVE-2024-21231 CVE-2024-21236 CVE-2024-21237 CVE-2024-21238 CVE-2024-21239 CVE-2024-21241 CVE-2024-21247 CVE-2024-37371 CVE-2025-21490 CVE-2025-21491 CVE-2025-21494 CVE-2025-21497 CVE-2025-21500 CVE-2025-21501 CVE-2025-21503 CVE-2025-21504 CVE-2025-21505 CVE-2025-21518 CVE-2025-21519 CVE-2025-21520 CVE-2025-21521 CVE-2025-21522 CVE-2025-21523 CVE-2025-21525 CVE-2025-21529 CVE-2025-21531 CVE-2025-21534 CVE-2025-21536 CVE-2025-21540 CVE-2025-21543 CVE-2025-21546 CVE-2025-21555 CVE-2025-21559 Description of changes: [8.0.41-2] - Fix patching of logrotate [8.0.41-1] - Update to MySQL 8.0.41 [8.0.40-1] - Update to MySQL 8.0.40 [8.0.39-1] - Rebase to version 8.0.39 [8.0.37-2] - Use signal to flush logs when rotating [8.0.37-1] - Update to MySQL 8.0.37 - Remove some legacy cmake options _______________________________________________ El-erratamailing list
Several security issues were fixed in MySQL.. ========================================================================== Ubuntu Security Notice USN-7102-1 November 12, 2024 mysql-8.0 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS Summary: Several security issues were fixed in MySQL. Software Description: - mysql-8.0: MySQL database Details: Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 8.0.40 in Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 24.10. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes. Please see the following for more information: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-40.html https://www.oracle.com/security-alerts/cpuoct2024.html Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 mysql-server-8.0 8.0.40-0ubuntu0.24.10.1 Ubuntu 24.04 LTS mysql-server-8.0 8.0.40-0ubuntu0.24.04.1 Ubuntu 22.04 LTS mysql-server-8.0 8.0.40-0ubuntu0.22.04.1 Ubuntu 20.04 LTS mysql-server-8.0 8.0.40-0ubuntu0.20.04.1 This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7102-1 CVE-2024-21193, CVE-2024-21194, CVE-2024-21196, CVE-2024-21197, CVE-2024-21198, CVE-2024-21199, CVE-2024-21201, CVE-2024-21212, CVE-2024-21213, CVE-2024-21219, CVE-2024-21230, CVE-2024-21231, CVE-2024-21236, CVE-2024-21237, CVE-2024-21239, CVE-2024-21241 PackageInformation: https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.40-0ubuntu0.24.10.1 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.40-0ubuntu0.24.04.1 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.40-0ubuntu0.22.04.1 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.40-0ubuntu0.20.04.1 . Ubuntu MySQL patches address numerous security vulnerabilities; keep systems current to maintain ideal security standards.. MySQL Security Updates, Ubuntu 24.10, MySQL Database Management, Cloud Infrastructure. . Severity: Important. LinuxSecurity.com Team
MySQL 8.0.39 Release notes: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-38.html https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-39.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-c611359ae1 2024-08-23 01:23:04.730539 -------------------------------------------------------------------------------- Name : community-mysql Product : Fedora 39 Version : 8.0.39 Release : 1.fc39 URL : https://www.mysql.com/ Summary : MySQL client programs and shared libraries Description : MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files. -------------------------------------------------------------------------------- Update Information: MySQL 8.0.39 Release notes: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-38.html https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-39.html -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 12 2024 Michal Schorm - 8.0.39-1 - Rebase to 8.0.39 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2258841 - CVE-2024-20960 CVE-2024-20961 CVE-2024-20962 CVE-2024-20963 CVE-2024-20964 CVE-2024-20965 CVE-2024-20966 CVE-2024-20967 CVE-2024-20969 CVE-2024-20970 CVE-2024-20971 CVE-2024-20972 CVE-2024-20973 ... community-mysql: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2258841 [ 2 ] Bug #2258842 - CVE-2024-20960 CVE-2024-20961 CVE-2024-20962 CVE-2024-20963 CVE-2024-20964 CVE-2024-20965 CVE-2024-20966 CVE-2024-20967 CVE-2024-20969 CVE-2024-20970 CVE-2024-20971 CVE-2024-20972 CVE-2024-20973 ... mysql:8.0/community-mysql: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2258842 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-c611359ae1' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
**MySQL 8.0.35** Release notes: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-35.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-9ff7fd16a0 2023-11-10 01:54:25.943229 -------------------------------------------------------------------------------- Name : community-mysql Product : Fedora 38 Version : 8.0.35 Release : 1.fc38 URL : http://www.mysql.com Summary : MySQL client programs and shared libraries Description : MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files. -------------------------------------------------------------------------------- Update Information: **MySQL 8.0.35** Release notes: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-35.html -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 21 2023 Lars Tangvald - 8.0.35-1 - Update to MySQL 8.0.35 - Remove patches now upstream -------------------------------------------------------------------------------- References: [ 1 ] Bug #2165809 - Testsuite suite 'query_rewrite_plugins' fails on Fedora 38 and later https://bugzilla.redhat.com/show_bug.cgi?id=2165809 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-9ff7fd16a0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
An update for the mysql:8.0 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: mysql:8.0 security, bug fix, and enhancement update Advisory ID: RHSA-2023:3087-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:3087 Issue date: 2023-05-16 CVE Names: CVE-2022-21594 CVE-2022-21599 CVE-2022-21604 CVE-2022-21608 CVE-2022-21611 CVE-2022-21617 CVE-2022-21625 CVE-2022-21632 CVE-2022-21633 CVE-2022-21637 CVE-2022-21640 CVE-2022-39400 CVE-2022-39408 CVE-2022-39410 CVE-2023-21836 CVE-2023-21863 CVE-2023-21864 CVE-2023-21865 CVE-2023-21867 CVE-2023-21868 CVE-2023-21869 CVE-2023-21870 CVE-2023-21871 CVE-2023-21873 CVE-2023-21874 CVE-2023-21875 CVE-2023-21876 CVE-2023-21877 CVE-2023-21878 CVE-2023-21879 CVE-2023-21880 CVE-2023-21881 CVE-2023-21882 CVE-2023-21883 CVE-2023-21887 CVE-2023-21912 CVE-2023-21917 ==================================================================== 1. Summary: An update for the mysql:8.0 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: MySQLis a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries. The following packages have been upgraded to a later upstream version: mysql (8.0.32). (BZ#2177734, BZ#2177735, BZ#2177736) Security Fix(es): * mysql: Server: Security: Privileges unspecified vulnerability (CPU Apr 2023) (CVE-2023-21912) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21594) * mysql: Server: Stored Procedure unspecified vulnerability (CPU Oct 2022) (CVE-2022-21599) * mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21604) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21608) * mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21611) * mysql: Server: Connection Handling unspecified vulnerability (CPU Oct 2022) (CVE-2022-21617) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21625) * mysql: Server: Security: Privileges unspecified vulnerability (CPU Oct 2022) (CVE-2022-21632) * mysql: Server: Replication unspecified vulnerability (CPU Oct 2022) (CVE-2022-21633) * mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21637) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21640) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39400) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39408) * mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39410) * mysql: Server: DML unspecified vulnerability (CPU Jan 2023) (CVE-2023-21836) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21863) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21864) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21865) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21867) * mysql: Server: Optimizer unspecifiedvulnerability (CPU Jan 2023) (CVE-2023-21868) * mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21869) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21870) * mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21871) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21873) * mysql: Server: Security: Encryption unspecified vulnerability (CPU Jan 2023) (CVE-2023-21875) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21876) * mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21877) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21878) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21879) * mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21880) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21881) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21883) * mysql: Server: GIS unspecified vulnerability (CPU Jan 2023) (CVE-2023-21887) * mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2023) (CVE-2023-21917) * mysql: Server: Thread Pooling unspecified vulnerability (CPU Jan 2023) (CVE-2023-21874) * mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21882) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * RHEL8 AppStream and Devel channels missing mecab-devel rpm (BZ#2180411) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing this update, the MySQL server daemon (mysqld) will be restarted automatically. 5. Bugs fixed (https://bugzilla.redhat.com/): 2142861 - CVE-2022-21594 mysql: Server: Optimizer unspecifiedvulnerability (CPU Oct 2022) 2142863 - CVE-2022-21599 mysql: Server: Stored Procedure unspecified vulnerability (CPU Oct 2022) 2142865 - CVE-2022-21604 mysql: InnoDB unspecified vulnerability (CPU Oct 2022) 2142868 - CVE-2022-21608 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2142869 - CVE-2022-21611 mysql: InnoDB unspecified vulnerability (CPU Oct 2022) 2142870 - CVE-2022-21617 mysql: Server: Connection Handling unspecified vulnerability (CPU Oct 2022) 2142871 - CVE-2022-21625 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2142872 - CVE-2022-21632 mysql: Server: Security: Privileges unspecified vulnerability (CPU Oct 2022) 2142873 - CVE-2022-21633 mysql: Server: Replication unspecified vulnerability (CPU Oct 2022) 2142875 - CVE-2022-21637 mysql: InnoDB unspecified vulnerability (CPU Oct 2022) 2142877 - CVE-2022-21640 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2142879 - CVE-2022-39400 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2142880 - CVE-2022-39408 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2142881 - CVE-2022-39410 mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) 2162268 - CVE-2023-21836 mysql: Server: DML unspecified vulnerability (CPU Jan 2023) 2162270 - CVE-2023-21863 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162271 - CVE-2023-21864 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162272 - CVE-2023-21865 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162274 - CVE-2023-21867 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162275 - CVE-2023-21868 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162276 - CVE-2023-21869 mysql: InnoDB unspecified vulnerability (CPU Jan 2023) 2162277 - CVE-2023-21870 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162278 - CVE-2023-21871 mysql: InnoDB unspecified vulnerability (CPU Jan 2023) 2162280 - CVE-2023-21873 mysql: Server:Optimizer unspecified vulnerability (CPU Jan 2023) 2162281 - CVE-2023-21874 mysql: Server: Thread Pooling unspecified vulnerability (CPU Jan 2023) 2162282 - CVE-2023-21875 mysql: Server: Security: Encryption unspecified vulnerability (CPU Jan 2023) 2162283 - CVE-2023-21876 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162284 - CVE-2023-21877 mysql: InnoDB unspecified vulnerability (CPU Jan 2023) 2162285 - CVE-2023-21878 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162286 - CVE-2023-21879 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162287 - CVE-2023-21880 mysql: InnoDB unspecified vulnerability (CPU Jan 2023) 2162288 - CVE-2023-21881 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162289 - CVE-2023-21882 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162290 - CVE-2023-21883 mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) 2162291 - CVE-2023-21887 mysql: Server: GIS unspecified vulnerability (CPU Jan 2023) 2177735 - mysql client not asking password when using "-p" option [rhel-8.8.0.z] 2180411 - RHEL8 AppStream and Devel channels missing mecab-devel rpm [rhel-8.8.0.z] 2188110 - CVE-2023-21912 mysql: Server: Security: Privileges unspecified vulnerability (CPU Apr 2023) 2188112 - CVE-2023-21917 mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2023) 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: mecab-0.996-2.module+el8.8.0+18436+8918dd75.src.rpm mecab-ipadic-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.src.rpm mysql-8.0.32-1.module+el8.8.0+18446+fca6280e.src.rpm aarch64: mecab-0.996-2.module+el8.8.0+18436+8918dd75.aarch64.rpm mecab-debuginfo-0.996-2.module+el8.8.0+18436+8918dd75.aarch64.rpm mecab-debugsource-0.996-2.module+el8.8.0+18436+8918dd75.aarch64.rpm mecab-devel-0.996-2.module+el8.8.0+18436+8918dd75.aarch64.rpm mecab-ipadic-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.aarch64.rpm mecab-ipadic-EUCJP-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.aarch64.rpm mysql-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-common-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-debugsource-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-devel-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-devel-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-errmsg-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-libs-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-libs-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-server-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-server-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-test-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm mysql-test-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.aarch64.rpm ppc64le: mecab-0.996-2.module+el8.8.0+18436+8918dd75.ppc64le.rpm mecab-debuginfo-0.996-2.module+el8.8.0+18436+8918dd75.ppc64le.rpm mecab-debugsource-0.996-2.module+el8.8.0+18436+8918dd75.ppc64le.rpm mecab-devel-0.996-2.module+el8.8.0+18436+8918dd75.ppc64le.rpm mecab-ipadic-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.ppc64le.rpm mecab-ipadic-EUCJP-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.ppc64le.rpm mysql-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-common-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-debugsource-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-devel-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-devel-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-errmsg-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-libs-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-libs-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-server-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-server-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-test-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm mysql-test-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.ppc64le.rpm s390x: mecab-0.996-2.module+el8.8.0+18436+8918dd75.s390x.rpm mecab-debuginfo-0.996-2.module+el8.8.0+18436+8918dd75.s390x.rpm mecab-debugsource-0.996-2.module+el8.8.0+18436+8918dd75.s390x.rpm mecab-devel-0.996-2.module+el8.8.0+18436+8918dd75.s390x.rpm mecab-ipadic-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.s390x.rpm mecab-ipadic-EUCJP-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.s390x.rpm mysql-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-common-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-debugsource-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-devel-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-devel-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-errmsg-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-libs-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-libs-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-server-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-server-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-test-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm mysql-test-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.s390x.rpm x86_64: mecab-0.996-2.module+el8.8.0+18436+8918dd75.x86_64.rpm mecab-debuginfo-0.996-2.module+el8.8.0+18436+8918dd75.x86_64.rpm mecab-debugsource-0.996-2.module+el8.8.0+18436+8918dd75.x86_64.rpm mecab-devel-0.996-2.module+el8.8.0+18436+8918dd75.x86_64.rpm mecab-ipadic-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.x86_64.rpm mecab-ipadic-EUCJP-2.7.0.20070801-16.module+el8.0.0+3898+e09bb8de.x86_64.rpm mysql-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-common-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-debugsource-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-devel-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-devel-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-errmsg-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-libs-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-libs-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-server-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-server-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-test-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm mysql-test-debuginfo-8.0.32-1.module+el8.8.0+18446+fca6280e.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7.References: https://access.redhat.com/security/cve/CVE-2022-21594 https://access.redhat.com/security/cve/CVE-2022-21599 https://access.redhat.com/security/cve/CVE-2022-21604 https://access.redhat.com/security/cve/CVE-2022-21608 https://access.redhat.com/security/cve/CVE-2022-21611 https://access.redhat.com/security/cve/CVE-2022-21617 https://access.redhat.com/security/cve/CVE-2022-21625 https://access.redhat.com/security/cve/CVE-2022-21632 https://access.redhat.com/security/cve/CVE-2022-21633 https://access.redhat.com/security/cve/CVE-2022-21637 https://access.redhat.com/security/cve/CVE-2022-21640 https://access.redhat.com/security/cve/CVE-2022-39400 https://access.redhat.com/security/cve/CVE-2022-39408 https://access.redhat.com/security/cve/CVE-2022-39410 https://access.redhat.com/security/cve/CVE-2023-21836 https://access.redhat.com/security/cve/CVE-2023-21863 https://access.redhat.com/security/cve/CVE-2023-21864 https://access.redhat.com/security/cve/CVE-2023-21865 https://access.redhat.com/security/cve/CVE-2023-21867 https://access.redhat.com/security/cve/CVE-2023-21868 https://access.redhat.com/security/cve/CVE-2023-21869 https://access.redhat.com/security/cve/CVE-2023-21870 https://access.redhat.com/security/cve/CVE-2023-21871 https://access.redhat.com/security/cve/CVE-2023-21873 https://access.redhat.com/security/cve/CVE-2023-21874 https://access.redhat.com/security/cve/CVE-2023-21875 https://access.redhat.com/security/cve/CVE-2023-21876 https://access.redhat.com/security/cve/CVE-2023-21877 https://access.redhat.com/security/cve/CVE-2023-21878 https://access.redhat.com/security/cve/CVE-2023-21879 https://access.redhat.com/security/cve/CVE-2023-21880 https://access.redhat.com/security/cve/CVE-2023-21881 https://access.redhat.com/security/cve/CVE-2023-21882 https://access.redhat.com/security/cve/CVE-2023-21883 https://access.redhat.com/security/cve/CVE-2023-21887 https://access.redhat.com/security/cve/CVE-2023-21912 https://access.redhat.com/security/cve/CVE-2023-21917 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBZGNwhtzjgjWX9erEAQhurQ//XfaqsYCxsggA7leJW256VXrz+rUQwtKX CbvtX+HMW18RGfrnqbaPmHTFIl9SFahP5btQD6QfpO6OauC3kL6yJV2P10O32TWK N+AeO+WEclcO649ZtyW5TpmvffQrEElB2S5s5QWPzQA8KOzQBiaaV7uzI3sD++Sv X2uTgKWOVytwKuP1Dre4Lp/NTa1iL3SITpS72OQKMmJmAj1NujiHfFwpZS+pSp3p lem6vDOwH8fF11aV6ZbhjTU6+bDS5ChEaat13vIDeZ4CWIjeLBJS4BGJcVZv1kDj IJfTJZTWrpTiXPoF9J00R4g9tmyT9WpQLr+ufPYo1USqM5+Spfp8tuRUbeKs4+mj IwHCJRoAJ2v1z/4F9uFYBSGEp1K+6/IYXMOFXeMNOZyh3DSz2o3W4tWS5nnbHc1w XrqU078xCnaBF8CS2ocP0A2EnqVcFM7B9Dt3jBUCisxU8A30K8r50pR3857g8fNy GgLzjCUXrZj1+J6AzQ4pdsCDRyNvPWpRVdQes9zhozfLd6IO9DMusiH6zuJtSw8N KDt7uhd+KzAUoW9gou6gC9V6k1l4tzyiVNa07SrjtHd6mA61IX4ynniTziCva0r5 9he6jNN6MArTb78DyZ5WlzAUIlayd8e/iPZQgkgkRnCuy++iPSJTLvdnfhdPBXia OaQwbDUqGws=dvyG -----END PGP SIGNATURE----- -- RHSA-announce mailing list
USN-6060-1 introduced a regression in MySQL.. =========================================================================Ubuntu Security Notice USN-6060-3 May 15, 2023 mysql-8.0 regression ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.04 - Ubuntu 22.10 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS Summary: USN-6060-1 introduced a regression in MySQL. Software Description: - mysql-8.0: MySQL database Details: USN-6060-1 fixed vulnerabilities in MySQL. The new upstream 8.0.33 version introduced a regression on the armhf architecture. This update fixes the problem. Original advisory details: Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 8.0.33 in Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 22.10, and Ubuntu 23.04. Ubuntu 18.04 LTS has been updated to MySQL 5.7.42. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes. Please see the following for more information: https://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-42.html https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-33.html https://www.oracle.com/security-alerts/cpuapr2023.html Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.04: mysql-server-8.0 8.0.33-0ubuntu0.23.04.2 Ubuntu 22.10: mysql-server-8.0 8.0.33-0ubuntu0.22.10.2 Ubuntu 22.04 LTS: mysql-server-8.0 8.0.33-0ubuntu0.22.04.2 Ubuntu 20.04 LTS: mysql-server-8.0 8.0.33-0ubuntu0.20.04.2 This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6060-3 https://ubuntu.com/security/notices/USN-6060-1 https://bugs.launchpad.net/ubuntu/+source/mysql-8.0/+bug/2019203 Package Information: https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.33-0ubuntu0.23.04.2 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.33-0ubuntu0.22.10.2 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.33-0ubuntu0.22.04.2 https://launchpad.net/ubuntu/+source/mysql-8.0/8.0.33-0ubuntu0.20.04.2 . Ensure your Ubuntu installations are updated to address the MySQL issues raised in USN-6060-1, which impacts several versions.. MySQL Regression, Ubuntu Updates, Security Advisory, Database Security. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.