[Git][security-tracker-team/security-tracker][master] Track two CVEs associated as well with MariaDB and fixed in supported releases

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 7 09:32:36 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2d973e09 by Salvatore Bonaccorso at 2021-08-07T10:31:58+02:00
Track two CVEs associated as well with MariaDB and fixed in supported releases

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -46107,8 +46107,11 @@ CVE-2021-2390 (Vulnerability in the MySQL Server product of Oracle MySQL (compon
 	- mysql-5.7 <removed>
 	- mysql-8.0 <unfixed>
 CVE-2021-2389 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	- mariadb-10.5 <unfixed>
+	- mariadb-10.3 <removed>
 	- mysql-5.7 <removed>
 	- mysql-8.0 <unfixed>
+	NOTE: Fixed in MariaDB 10.5.12, 10.3.31
 CVE-2021-2388 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	{DSA-4946-1}
 	- openjdk-11 11.0.12+7-1
@@ -46145,8 +46148,11 @@ CVE-2021-2374 (Vulnerability in the MySQL Server product of Oracle MySQL (compon
 CVE-2021-2373 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2021-2372 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	- mariadb-10.5 <unfixed>
+	- mariadb-10.3 <removed>
 	- mysql-5.7 <removed>
 	- mysql-8.0 <unfixed>
+	NOTE: Fixed in MariaDB 10.5.12, 10.3.31
 CVE-2021-2371 (Vulnerability in the Oracle Coherence product of Oracle Fusion Middlew ...)
 	NOT-FOR-US: Oracle
 CVE-2021-2370 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d973e09279dc2bb3abd89a43429286fad3163fd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d973e09279dc2bb3abd89a43429286fad3163fd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210807/c81896a2/attachment.htm>


More information about the debian-security-tracker-commits mailing list