[Git][security-tracker-team/security-tracker][master] more mariadb spu updates

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Dec 2 09:20:54 GMT 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e7cb5b9f by Moritz Muehlenhoff at 2022-12-02T10:20:17+01:00
more mariadb spu updates

- - - - -


2 changed files:

- data/CVE/list
- data/next-point-update.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -22913,6 +22913,7 @@ CVE-2022-38791 (In MariaDB before 10.9.2, compress_write in extra/mariabackup/ds
 	{DLA-3114-1}
 	- mariadb-10.6 1:10.6.9-1
 	- mariadb-10.5 <removed>
+	[bullseye] - mariadb-10.5 <no-dsa> (Will be fixed via spu)
 	- mariadb-10.3 <removed>
 	NOTE: https://jira.mariadb.org/browse/MDEV-28719
 	NOTE: MariaDB fixed in 10.3.36, 10.5.17, 10.6.9
@@ -55054,6 +55055,7 @@ CVE-2022-27458 (MariaDB Server v10.6.3 and below was discovered to contain an us
 CVE-2022-27457 (MariaDB Server v10.6.3 and below was discovered to contain an use-afte ...)
 	- mariadb-10.6 1:10.6.8-1
 	- mariadb-10.5 <removed>
+	[bullseye] - mariadb-10.5 <no-dsa> (Will be fixed via spu)
 	- mariadb-10.3 <not-affected> (Only affects MariaDB 10.4 onwards)
 	- mariadb-10.1 <not-affected> (Only affects MariaDB 10.4 onwards)
 	NOTE: https://jira.mariadb.org/browse/MDEV-28098
@@ -55318,6 +55320,7 @@ CVE-2022-27383 (MariaDB Server v10.6 and below was discovered to contain an use-
 	{DLA-3114-1}
 	- mariadb-10.6 1:10.6.8-1
 	- mariadb-10.5 <removed>
+	[bullseye] - mariadb-10.5 <no-dsa> (Will be fixed via spu)
 	- mariadb-10.3 <removed>
 	- mariadb-10.1 <removed>
 	NOTE: https://jira.mariadb.org/browse/MDEV-26323


=====================================
data/next-point-update.txt
=====================================
@@ -158,3 +158,5 @@ CVE-2022-32087
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 CVE-2022-32088
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
+CVE-2022-38791
+	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7cb5b9f8ab949f25d7c7b88c72f117c8cc46d18

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7cb5b9f8ab949f25d7c7b88c72f117c8cc46d18
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221202/5e3b6aa7/attachment.htm>


More information about the debian-security-tracker-commits mailing list