Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Moderate: mysql:8.4 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:5640", "synopsis": "Moderate: mysql:8.4 security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for mecab-ipadic, rapidjson, module.rapidjson, module.mecab-ipadic, module.mecab, mecab.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.\n\nSecurity Fix(es):\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21941)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21948)\n\n* mysql: InnoDB unspecified vulnerability (CPU Jan 2026) (CVE-2026-21936)\n\n* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21968)\n\n* mysql: DDL unspecified vulnerability (CPU Jan 2026) (CVE-2026-21937)\n\n* mysql: Thread Pooling unspecified vulnerability (CPU Jan 2026) (CVE-2026-21964)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2431384", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431384", "description": ""}, {"ticket": "2431385", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431385", "description": ""}, {"ticket": "2431402", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431402", "description": ""}, {"ticket": "2431409", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431409", "description": ""}, {"ticket": "2431413", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2431413", "description": ""}, {"ticket": "2431431", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431431", "description": ""}], "cves": [{"name": "CVE-2026-21936", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21936", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": null}, {"name": "CVE-2026-21937", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21937", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": null}, {"name": "CVE-2026-21941", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21941", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": null}, {"name": "CVE-2026-21948", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21948", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": null}, {"name": "CVE-2026-21964", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21964", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.9", "cwe": null}, {"name": "CVE-2026-21968", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-21968", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "6.5", "cwe": null}], "references": [], "publishedAt": "2026-03-24T18:03:46.961393Z", "rpms": {"Rocky Linux 9": {"nvras": ["mecab-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.aarch64.rpm", "mecab-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.ppc64le.rpm", "mecab-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.s390x.rpm", "mecab-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.src.rpm", "mecab-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.x86_64.rpm", "mecab-debuginfo-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.aarch64.rpm","mecab-debuginfo-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.ppc64le.rpm", "mecab-debuginfo-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.s390x.rpm", "mecab-debuginfo-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.x86_64.rpm", "mecab-debugsource-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.aarch64.rpm", "mecab-debugsource-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.ppc64le.rpm", "mecab-debugsource-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.s390x.rpm", "mecab-debugsource-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.x86_64.rpm", "mecab-devel-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.aarch64.rpm", "mecab-devel-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.ppc64le.rpm", "mecab-devel-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.s390x.rpm", "mecab-devel-0:0.996-3.module+el9.7.0+40027+0df0d4e0.4.x86_64.rpm", "mecab-ipadic-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.aarch64.rpm", "mecab-ipadic-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.ppc64le.rpm", "mecab-ipadic-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.s390x.rpm", "mecab-ipadic-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.src.rpm", "mecab-ipadic-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.x86_64.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.aarch64.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.ppc64le.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.s390x.rpm", "mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.7.0+40027+0df0d4e0.x86_64.rpm", "rapidjson-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.src.rpm", "rapidjson-devel-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.aarch64.rpm", "rapidjson-devel-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.ppc64le.rpm", "rapidjson-devel-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.s390x.rpm", "rapidjson-devel-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.x86_64.rpm", "rapidjson-doc-0:1.1.0-19.module+el9.7.0+40027+0df0d4e0.noarch.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Rocky Linux warns of moderate updates for MySQL affecting security andperformance. Stay secure with timely updates!. Rocky Linux, MySQL security, database optimization, updates. . LinuxSecurity.com Team
Some security vulenarbilities have been fixed. Some bigger bugs in optimizer and replication engine have been found and fixed. See release notes for details. References: . MGASA-2022-0215 - Updated mariadb packages fix security vulnerability Publication date: 03 Jun 2022 URL: https://advisories.mageia.org/MGASA-2022-0215.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-27376, CVE-2022-27377, CVE-2022-27378, CVE-2022-27379, CVE-2022-27380, CVE-2022-27381, CVE-2022-27382, CVE-2022-27383, CVE-2022-27384, CVE-2022-27386, CVE-2022-27387, CVE-2022-27444, CVE-2022-27445, CVE-2022-27446, CVE-2022-27447, CVE-2022-27448, CVE-2022-27449 Some security vulenarbilities have been fixed. Some bigger bugs in optimizer and replication engine have been found and fixed. See release notes for details. References: - https://bugs.mageia.org/show_bug.cgi?id=30460 - https://mariadb.com/docs/release-notes/community-server/old-releases/mariadb-10-5-series/mariadb-10516-release-notes - https://www.cve.org/CVERecord?id=CVE-2022-27376 - https://www.cve.org/CVERecord?id=CVE-2022-27377 - https://www.cve.org/CVERecord?id=CVE-2022-27378 - https://www.cve.org/CVERecord?id=CVE-2022-27379 - https://www.cve.org/CVERecord?id=CVE-2022-27380 - https://www.cve.org/CVERecord?id=CVE-2022-27381 - https://www.cve.org/CVERecord?id=CVE-2022-27382 - https://www.cve.org/CVERecord?id=CVE-2022-27383 - https://www.cve.org/CVERecord?id=CVE-2022-27384 - https://www.cve.org/CVERecord?id=CVE-2022-27386 - https://www.cve.org/CVERecord?id=CVE-2022-27387 - https://www.cve.org/CVERecord?id=CVE-2022-27444 - https://www.cve.org/CVERecord?id=CVE-2022-27445 - https://www.cve.org/CVERecord?id=CVE-2022-27446 - https://www.cve.org/CVERecord?id=CVE-2022-27447 - https://www.cve.org/CVERecord?id=CVE-2022-27448 - https://www.cve.org/CVERecord?id=CVE-2022-27449 SRPMS: - 8/core/mariadb-10.5.16-1.mga8 . Latest mariadb updates tackle vulnerabilities in both the optimizer and replicationfeatures for Mageia 8. More information available in the advisory.. Mageia Security Update, MariaDB Issues, Optimizer Fix. . LinuxSecurity.com Team
This DSA updates the MySQL database to 5.1.72. This fixes multiple unspecified security problems in the Optimizer component: https://www.oracle.com/security-alerts/cpuoct2013.html . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2780-1
Get the latest Linux and open source security news straight to your inbox.