{"schema_version":"1.7.3","id":"SUSE-SU-2022:2561-1","published":"2022-07-27T12:18:58Z","modified":"2026-02-04T02:37:34.810785Z","related":["CVE-2021-46657","CVE-2021-46658","CVE-2021-46659","CVE-2021-46661","CVE-2021-46663","CVE-2021-46664","CVE-2021-46665","CVE-2021-46668","CVE-2021-46669","CVE-2022-24048","CVE-2022-24050","CVE-2022-24051","CVE-2022-24052","CVE-2022-27376","CVE-2022-27377","CVE-2022-27378","CVE-2022-27379","CVE-2022-27380","CVE-2022-27381","CVE-2022-27382","CVE-2022-27383","CVE-2022-27384","CVE-2022-27386","CVE-2022-27387","CVE-2022-27444","CVE-2022-27445","CVE-2022-27446","CVE-2022-27447","CVE-2022-27448","CVE-2022-27449","CVE-2022-27451","CVE-2022-27452","CVE-2022-27455","CVE-2022-27456","CVE-2022-27457","CVE-2022-27458"],"upstream":["CVE-2021-46657","CVE-2021-46658","CVE-2021-46659","CVE-2021-46661","CVE-2021-46663","CVE-2021-46664","CVE-2021-46665","CVE-2021-46668","CVE-2021-46669","CVE-2022-24048","CVE-2022-24050","CVE-2022-24051","CVE-2022-24052","CVE-2022-27376","CVE-2022-27377","CVE-2022-27378","CVE-2022-27379","CVE-2022-27380","CVE-2022-27381","CVE-2022-27382","CVE-2022-27383","CVE-2022-27384","CVE-2022-27386","CVE-2022-27387","CVE-2022-27444","CVE-2022-27445","CVE-2022-27446","CVE-2022-27447","CVE-2022-27448","CVE-2022-27449","CVE-2022-27451","CVE-2022-27452","CVE-2022-27455","CVE-2022-27456","CVE-2022-27457","CVE-2022-27458"],"summary":"Security update for mariadb","details":"This update for mariadb fixes the following issues:\n\n- Added mariadb-galera (jsc#SLE-22245)\n\nUpdate to 10.6.8 (bsc#1199928):\n\n- CVE-2021-46669 (bsc#1199928)\n- CVE-2022-27376 (bsc#1198628)\n- CVE-2022-27377 (bsc#1198603)\n- CVE-2022-27378 (bsc#1198604)\n- CVE-2022-27379 (bsc#1198605)\n- CVE-2022-27380 (bsc#1198606)\n- CVE-2022-27381 (bsc#1198607)\n- CVE-2022-27382 (bsc#1198609)\n- CVE-2022-27383 (bsc#1198610)\n- CVE-2022-27384 (bsc#1198611)\n- CVE-2022-27386 (bsc#1198612)\n- CVE-2022-27387 (bsc#1198613)\n- CVE-2022-27444 (bsc#1198634)\n- CVE-2022-27445 (bsc#1198629)\n- CVE-2022-27446 (bsc#1198630)\n- CVE-2022-27447 (bsc#1198631)\n- CVE-2022-27448 (bsc#1198632)\n- CVE-2022-27449 (bsc#1198633)\n- CVE-2022-27451 (bsc#1198639)\n- CVE-2022-27452 (bsc#1198640)\n- CVE-2022-27455 (bsc#1198638)\n- CVE-2022-27456 (bsc#1198635)\n- CVE-2022-27457 (bsc#1198636)\n- CVE-2022-27458 (bsc#1198637)\n\n- The following issue is not affecting this package: CVE-2022-21427\n\nUpdate to 10.6.7 (bsc#1196016):\n\n- CVE-2021-46665, CVE-2021-46664, CVE-2021-46661, CVE-2021-46668, CVE-2021-46663 \n\nUpdate to 10.6.6: \n\n- CVE-2022-24052, CVE-2022-24051, CVE-2022-24050, CVE-2022-24048, CVE-2021-46659 (bsc#1195339)\n\nThe following issues have been fixed already but didn't have CVE references:\n\n- CVE-2021-46658 (bsc#1195334)\n- CVE-2021-46657 (bsc#1195325)\n\nNon security fixes:\n\n- Skip failing tests for s390x, fixes bsc#1195076\n\nExternal refernences:\n\n- https://mariadb.com/kb/en/library/mariadb-1068-release-notes\n- https://mariadb.com/kb/en/library/mariadb-1068-changelog\n- https://mariadb.com/kb/en/library/mariadb-1067-release-notes\n- https://mariadb.com/kb/en/library/mariadb-1067-changelog\n- https://mariadb.com/kb/en/library/mariadb-1066-release-notes\n- https://mariadb.com/kb/en/library/mariadb-1066-changelog\n","affected":[{"package":{"name":"mariadb","ecosystem":"SUSE:Linux Enterprise Module for Server Applications 15 SP4","purl":"pkg:rpm/suse/mariadb&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.6.8-150400.3.7.1"}]}],"ecosystem_specific":{"binaries":[{"libmariadbd-devel":"10.6.8-150400.3.7.1","libmariadbd19":"10.6.8-150400.3.7.1","mariadb":"10.6.8-150400.3.7.1","mariadb-client":"10.6.8-150400.3.7.1","mariadb-errormessages":"10.6.8-150400.3.7.1","mariadb-tools":"10.6.8-150400.3.7.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2022:2561-1.json"}},{"package":{"name":"mariadb","ecosystem":"openSUSE:Leap 15.4","purl":"pkg:rpm/opensuse/mariadb&distro=openSUSE%20Leap%2015.4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.6.8-150400.3.7.1"}]}],"ecosystem_specific":{"binaries":[{"libmariadbd-devel":"10.6.8-150400.3.7.1","libmariadbd19":"10.6.8-150400.3.7.1","mariadb":"10.6.8-150400.3.7.1","mariadb-bench":"10.6.8-150400.3.7.1","mariadb-client":"10.6.8-150400.3.7.1","mariadb-errormessages":"10.6.8-150400.3.7.1","mariadb-galera":"10.6.8-150400.3.7.1","mariadb-rpm-macros":"10.6.8-150400.3.7.1","mariadb-test":"10.6.8-150400.3.7.1","mariadb-tools":"10.6.8-150400.3.7.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2022:2561-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20222561-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1195076"},{"type":"REPORT","url":"https://bugzilla.suse.com/1195325"},{"type":"REPORT","url":"https://bugzilla.suse.com/1195334"},{"type":"REPORT","url":"https://bugzilla.suse.com/1195339"},{"type":"REPORT","url":"https://bugzilla.suse.com/1196016"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198603"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198604"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198605"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198606"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198607"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198609"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198610"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198611"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198612"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198613"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198628"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198629"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198630"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198631"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198632"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198633"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198634"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198635"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198636"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198637"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198638"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198639"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198640"},{"type":"REPORT","url":"https://bugzilla.suse.com/1199928"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46657"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46658"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46659"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46661"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46663"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46664"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46665"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46668"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46669"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-24048"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-24050"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-24051"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-24052"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27376"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27377"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27378"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27379"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27380"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27381"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27382"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27383"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27384"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27386"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27387"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27444"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27445"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27446"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27447"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27448"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27449"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27451"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27452"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27455"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27456"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27457"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-27458"}]}