Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-19021

Опубликовано: 08 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-19021: galera and mariadb11.8 security update (MODERATE)

galera [26.4.25-1]

  • Rebased to 26.4.25

[26.4.24-1]

  • Rebase to 26.4.24

[26.4.23-1]

  • Rebase to 26.4.23

[26.4.22-1]

  • Rebase to 26.4.22

[26.4.21-2]

  • Add sysusers.d config file to allow rpm to create users/groups automatically

mariadb11.8 [3:11.8.6-2]

  • Added a fix for SIGSEGV when using skip-grant-tables
  • Resolves: RHBZ#2438390

[3:11.8.6-1]

  • Rebase to 11.8.6

[3:11.8.5-1]

  • Rebase to 11.8.5

[3:11.8.3-7]

  • Bump release for rebuild

[3:11.8.3-6]

  • Bump release for rebuild

[3:11.8.3-5]

  • Revert to soft static allocation of MariaDB and MySQL sysusers.d files

[3:11.8.3-4]

  • Bump release for tmpfiles.d change

[3:11.8.3-1]

  • Initial commit on c10s
  • Resolves: RHEL-115468

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

galera

26.4.25-1.el10_2

mariadb11.8

11.8.6-2.el10_2

mariadb11.8-backup

11.8.6-2.el10_2

mariadb11.8-client-utils

11.8.6-2.el10_2

mariadb11.8-common

11.8.6-2.el10_2

mariadb11.8-devel

11.8.6-2.el10_2

mariadb11.8-embedded

11.8.6-2.el10_2

mariadb11.8-embedded-devel

11.8.6-2.el10_2

mariadb11.8-errmsg

11.8.6-2.el10_2

mariadb11.8-gssapi-server

11.8.6-2.el10_2

mariadb11.8-oqgraph-engine

11.8.6-2.el10_2

mariadb11.8-pam

11.8.6-2.el10_2

mariadb11.8-server

11.8.6-2.el10_2

mariadb11.8-server-galera

11.8.6-2.el10_2

mariadb11.8-server-utils

11.8.6-2.el10_2

mariadb11.8-test

11.8.6-2.el10_2

Oracle Linux x86_64

galera

26.4.25-1.el10_2

mariadb11.8

11.8.6-2.el10_2

mariadb11.8-backup

11.8.6-2.el10_2

mariadb11.8-client-utils

11.8.6-2.el10_2

mariadb11.8-common

11.8.6-2.el10_2

mariadb11.8-devel

11.8.6-2.el10_2

mariadb11.8-embedded

11.8.6-2.el10_2

mariadb11.8-embedded-devel

11.8.6-2.el10_2

mariadb11.8-errmsg

11.8.6-2.el10_2

mariadb11.8-gssapi-server

11.8.6-2.el10_2

mariadb11.8-oqgraph-engine

11.8.6-2.el10_2

mariadb11.8-pam

11.8.6-2.el10_2

mariadb11.8-server

11.8.6-2.el10_2

mariadb11.8-server-galera

11.8.6-2.el10_2

mariadb11.8-server-utils

11.8.6-2.el10_2

mariadb11.8-test

11.8.6-2.el10_2

Связанные CVE

Связанные уязвимости

CVSS3: 8.5
ubuntu
4 месяца назад

MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code execution. These conditions require tight control over memory layout which is generally only attainable in a lab environment. This issue is fixed in MariaDB 11.4.10, MariaDB 11.8.6, and MariaDB 12.2.2.

CVSS3: 7.5
redhat
4 месяца назад

MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code execution. These conditions require tight control over memory layout which is generally only attainable in a lab environment. This issue is fixed in MariaDB 11.4.10, MariaDB 11.8.6, and MariaDB 12.2.2.

CVSS3: 8.5
nvd
4 месяца назад

MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code execution. These conditions require tight control over memory layout which is generally only attainable in a lab environment. This issue is fixed in MariaDB 11.4.10, MariaDB 11.8.6, and MariaDB 12.2.2.

CVSS3: 8.5
debian
4 месяца назад

MariaDB server is a community developed fork of MySQL server. An authe ...

suse-cvrf
3 месяца назад

Security update for mariadb