Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:0737

Опубликовано: 13 фев. 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: mariadb:10.11 security update

MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL.

Security Fix(es):

  • mysql: Client: mysqldump unspecified vulnerability (CPU Apr 2024) (CVE-2024-21096)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
galerax86_641.module+el8.10.0+1925+356c22e8galera-26.4.20-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
Judyx86_6418.module+el8.10.0+1674+fa55eae9Judy-1.0.5-18.module+el8.10.0+1674+fa55eae9.x86_64.rpm
mariadbx86_641.module+el8.10.0+1925+356c22e8mariadb-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-backupx86_641.module+el8.10.0+1925+356c22e8mariadb-backup-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-commonx86_641.module+el8.10.0+1925+356c22e8mariadb-common-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-develx86_641.module+el8.10.0+1925+356c22e8mariadb-devel-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-embeddedx86_641.module+el8.10.0+1925+356c22e8mariadb-embedded-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-embedded-develx86_641.module+el8.10.0+1925+356c22e8mariadb-embedded-devel-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-errmsgx86_641.module+el8.10.0+1925+356c22e8mariadb-errmsg-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm
mariadb-gssapi-serverx86_641.module+el8.10.0+1925+356c22e8mariadb-gssapi-server-10.11.10-1.module+el8.10.0+1925+356c22e8.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 1 года назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L).

CVSS3: 4.9
redhat
больше 1 года назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L).

CVSS3: 4.9
nvd
больше 1 года назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L).

CVSS3: 4.9
msrc
около 1 года назад

Описание отсутствует

CVSS3: 4.9
debian
больше 1 года назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: ...