[Git][security-tracker-team/security-tracker][master] Several mysql-5.7 CVEs fixed in unstable

Salvatore Bonaccorso carnil at debian.org
Sun Jun 10 19:19:18 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dc6d3eb9 by Salvatore Bonaccorso at 2018-06-10T20:18:50+02:00
Several mysql-5.7 CVEs fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -25167,7 +25167,7 @@ CVE-2018-2848 (Vulnerability in the Oracle Hospitality Simphony First Edition ..
 CVE-2018-2847 (Vulnerability in the Oracle Hospitality Simphony First Edition ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2846 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2845 (Vulnerability in the Oracle VM VirtualBox component of Oracle ...)
@@ -25191,7 +25191,7 @@ CVE-2018-2841 (Vulnerability in the Java VM component of Oracle Database Server.
 CVE-2018-2840 (Vulnerability in the Oracle Retail Xstore Point of Service component ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2839 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2838 (Vulnerability in the PeopleSoft Enterprise PRTL Interaction Hub ...)
@@ -25246,25 +25246,25 @@ CVE-2018-2819 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2818 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2817 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2816 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2815 (Vulnerability in the Java SE, Java SE Embedded, JRockit component of ...)
@@ -25285,18 +25285,18 @@ CVE-2018-2813 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2812 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2811 (Vulnerability in the Java SE component of Oracle Java SE ...)
 	- openjdk-8 <not-affected> (Specific to Oracle Java, our installation procedure are obviously different)
 CVE-2018-2810 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2809 (Vulnerability in the PeopleSoft Enterprise PeopleTools component of ...)
@@ -25384,12 +25384,12 @@ CVE-2018-2788 (Vulnerability in the PeopleSoft Enterprise PeopleTools component 
 CVE-2018-2787 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6 and 5.7)
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2786 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2785 (Vulnerability in the PeopleSoft Enterprise PeopleTools component of ...)
@@ -25397,7 +25397,7 @@ CVE-2018-2785 (Vulnerability in the PeopleSoft Enterprise PeopleTools component 
 CVE-2018-2784 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6 and 5.7)
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
@@ -25409,7 +25409,7 @@ CVE-2018-2783 (Vulnerability in the Java SE, Java SE Embedded, JRockit component
 CVE-2018-2782 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6 and 5.7)
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
@@ -25417,39 +25417,39 @@ CVE-2018-2781 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2780 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2779 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2778 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2777 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2776 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2775 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2774 (Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2773 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2772 (Vulnerability in the PeopleSoft Enterprise PeopleTools component of ...)
@@ -25458,14 +25458,14 @@ CVE-2018-2771 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2770 (Vulnerability in the Oracle Adaptive Access Manager component of ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2769 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2768 (Vulnerability in the Oracle Outside In Technology component of Oracle ...)
@@ -25487,7 +25487,7 @@ CVE-2018-2767 [Use of SSL/TLS not enforced in client library (Return of BACKRONY
 CVE-2018-2766 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6 and 5.7)
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
@@ -25498,25 +25498,25 @@ CVE-2018-2764 (Vulnerability in the Solaris component of Oracle Sun Systems Prod
 CVE-2018-2763 (Vulnerability in the Solaris component of Oracle Sun Systems Products ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2762 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2761 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2760 (Vulnerability in the Oracle HTTP Server component of Oracle Fusion ...)
 	NOT-FOR-US: Oracle
 CVE-2018-2759 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2758 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6 and 5.7)
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL
 CVE-2018-2757
@@ -25527,7 +25527,7 @@ CVE-2018-2755 (Vulnerability in the MySQL Server component of Oracle MySQL ...)
 	{DSA-4176-1 DLA-1355-1}
 	- mariadb-10.1 <unfixed> (bug #898445)
 	- mariadb-10.0 <removed>
-	- mysql-5.7 <unfixed> (bug #895997)
+	- mysql-5.7 5.7.22-1 (bug #895997)
 	- mysql-5.5 <removed>
 	NOTE: Fixed in MariaDB 10.0.35, 10.1.33
 	NOTE: http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html#AppendixMSQL



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dc6d3eb94e3d3de89ee12e122bbf978dd82e05e1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dc6d3eb94e3d3de89ee12e122bbf978dd82e05e1
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180610/ffb85f3b/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list