Bug 32539 - MariaDB: 10.11.6 fixes issues
Summary: MariaDB: 10.11.6 fixes issues
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 9
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL:
Whiteboard: MGA9-64-OK
Keywords: advisory, validated_update
Depends on:
Blocks:
 
Reported: 2023-11-20 23:44 CET by Marc Krämer
Modified: 2023-11-28 12:09 CET (History)
5 users (show)

See Also:
Source RPM: mariadb
CVE: CVE-2023-22084
Status comment:


Attachments

Description Marc Krämer 2023-11-20 23:44:48 CET
New release with many fixes and the usual cve
https://mariadb.com/kb/en/mariadb-10-11-6-release-notes/
Marc Krämer 2023-11-20 23:44:53 CET

CVE: (none) => CVE-2023-22084

Comment 1 Marc Krämer 2023-11-20 23:49:50 CET
Updated MariaDB packages fixes a security vulnerability:

Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server.

Additonally a whole bunch of fixes to InnoDB, Replication, Optimizer, Galera, Spider, Backup,... have been applied. See the official release notes for details. 


References:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-22084
https://mariadb.com/kb/en/mariadb-10-11-6-release-notes/
========================

Updated packages in core/updates_testing:
========================
mariadb-client-10.11.6-1.mga9
mariadb-client-debuginfo-10.11.6-1.mga9
lib64mariadbd19-10.11.6-1.mga9
mariadb-core-10.11.6-1.mga9
lib64mariadb-embedded-devel-10.11.6-1.mga9
mariadb-mroonga-debuginfo-10.11.6-1.mga9
mariadb-mroonga-10.11.6-1.mga9
mariadb-common-10.11.6-1.mga9
lib64mariadb-devel-10.11.6-1.mga9
mariadb-rocks-10.11.6-1.mga9
mariadb-spider-debuginfo-10.11.6-1.mga9
mariadb-connect-debuginfo-10.11.6-1.mga9
mariadb-s3-engine-10.11.6-1.mga9
mariadb-debuginfo-10.11.6-1.mga9
mariadb-bench-debuginfo-10.11.6-1.mga9
mariadb-connect-10.11.6-1.mga9
mariadb-extra-debuginfo-10.11.6-1.mga9
mariadb-feedback-debuginfo-10.11.6-1.mga9
mariadb-spider-10.11.6-1.mga9
mariadb-10.11.6-1.mga9
mariadb-obsolete-debuginfo-10.11.6-1.mga9
mariadb-s3-engine-debuginfo-10.11.6-1.mga9
lib64mariadb3-debuginfo-10.11.6-1.mga9
lib64mariadb3-10.11.6-1.mga9
mariadb-sphinx-debuginfo-10.11.6-1.mga9
mariadb-common-core-10.11.6-1.mga9
mariadb-extra-10.11.6-1.mga9
mariadb-sequence-debuginfo-10.11.6-1.mga9
mariadb-sphinx-10.11.6-1.mga9
mariadb-obsolete-10.11.6-1.mga9
mariadb-sequence-10.11.6-1.mga9
mariadb-pam-10.11.6-1.mga9
mariadb-pam-debuginfo-10.11.6-1.mga9
mariadb-feedback-10.11.6-1.mga9
mysql-MariaDB-10.11.6-1.mga9
lib64mariadb-devel-debuginfo-10.11.6-1.mga9
mariadb-debugsource-10.11.6-1.mga9
lib64mariadbd19-debuginfo-10.11.6-1.mga9
mariadb-core-debuginfo-10.11.6-1.mga9
mariadb-bench-10.11.6-1.mga9
mariadb-common-debuginfo-10.11.6-1.mga9
mariadb-rocks-debuginfo-10.11.6-1.mga9
lib64mariadb-embedded-devel-debuginfo-10.11.6-1.mga9

SRPM:
mariadb-10.11.6-1.mga9.src.rpm

Assignee: mageia => qa-bugs

Comment 2 Marja Van Waes 2023-11-21 00:11:50 CET
Advisory from comment 1 added to SVN. Please remove the "advisory" keyword if it needs to be changed. It also helps when obsolete advisories are tagged as "obsolete"

Keywords: (none) => advisory
CC: (none) => marja11

Comment 3 Morgan Leijström 2023-11-21 00:32:30 CET
mga9-64 Clean update of installed packages

- lib64mariadb3-10.11.6-1.mga9.x86_64
- mariadb-10.11.6-1.mga9.x86_64
- mariadb-client-10.11.6-1.mga9.x86_64
- mariadb-common-10.11.6-1.mga9.x86_64
- mariadb-common-core-10.11.6-1.mga9.x86_64
- mariadb-core-10.11.6-1.mga9.x86_64
- mariadb-extra-10.11.6-1.mga9.x86_64

This system do not use akonadi or anything else I think use mariadb, so not testing...

CC: (none) => fri

Comment 4 Herman Viaene 2023-11-27 17:22:51 CET
MGA9-64 on HP Pavillion 3168NGW
No installation issues
Used 
- mysql_secure_installation for a first time initiation of the database engine
- phpmyadmin to create a new database, in it a new table with columns, primary and unique key and populated with t few rows.
All works OK

CC: (none) => herman.viaene
Whiteboard: (none) => MGA9-64-OK

Comment 5 Thomas Andrews 2023-11-28 02:33:11 CET
Validating.

Keywords: (none) => validated_update
CC: (none) => andrewsfarm, sysadmin-bugs

Comment 6 Mageia Robot 2023-11-28 12:09:33 CET
An update for this issue has been pushed to the Mageia Updates repository.

https://advisories.mageia.org/MGASA-2023-0327.html

Resolution: (none) => FIXED
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.