[Git][security-tracker-team/security-tracker][master] MariaDB/MDEV-24176

Bastien Roucariès (@rouca) rouca at debian.org
Tue Sep 17 18:12:06 BST 2024



Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d142d9ed by Bastien Roucariès at 2024-09-17T17:11:14+00:00
MariaDB/MDEV-24176

Mark mariadb-10.1 as not affected.

Test suite does not reproduce the problem or raise syntax error

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -198039,7 +198039,7 @@ CVE-2022-27456 (MariaDB Server v10.6.3 and below was discovered to contain an us
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: Bug MariaDB: https://jira.mariadb.org/browse/MDEV-28093
 	NOTE: Bug MariaDB (main): https://jira.mariadb.org/browse/MDEV-24176
 	NOTE: Same fix than  CVE-2022-27376, CVE-2022-27379, CVE-2022-27447, CVE-2022-27449, CVE-2022-27452
@@ -198064,7 +198064,7 @@ CVE-2022-27452 (MariaDB Server v10.9 and below was discovered to contain a segme
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: MariaDB bug: https://jira.mariadb.org/browse/MDEV-28090
 	NOTE: MariaDB main bug: https://jira.mariadb.org/browse/MDEV-24176
 	NOTE: Same fix than CVE-2022-27376, CVE-2022-27379, CVE-2022-27447, CVE-2022-27449, CVE-2022-27456
@@ -198087,7 +198087,7 @@ CVE-2022-27449 (MariaDB Server v10.9 and below was discovered to contain a segme
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: MariaDB bug: https://jira.mariadb.org/browse/MDEV-28089
 	NOTE: MariaDB main bug: https://jira.mariadb.org/browse/MDEV-24176
 	NOTE: Same fix than CVE-2022-27376, CVE-2022-27379, CVE-2022-27447, CVE-2022-27452, CVE-2022-27456
@@ -198111,7 +198111,7 @@ CVE-2022-27447 (MariaDB Server v10.9 and below was discovered to contain a use-a
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: MariaDB bug: https://jira.mariadb.org/browse/MDEV-28099
 	NOTE: MariaDB main bug: https://jira.mariadb.org/browse/MDEV-24176
 	NOTE: Same fix than CVE-2022-27376, CVE-2022-27379 and CVE-2022-27449, CVE-2022-27452, CVE-2022-27456
@@ -198371,7 +198371,7 @@ CVE-2022-27379 (An issue in the component Arg_comparator::compare_real_fixed of
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: MariaDB bug: https://jira.mariadb.org/browse/MDEV-26353
 	NOTE: MariaDB bug (main): https://jira.mariadb.org/browse/MDEV-24176
 	NOTE: Same fix than CVE-2022-27376, CVE-2022-27447, CVE-2022-27449, CVE-2022-27452, CVE-2022-27456
@@ -198402,7 +198402,7 @@ CVE-2022-27376 (MariaDB Server v10.6.5 and below was discovered to contain an us
 	- mariadb-10.5 <removed>
 	[bullseye] - mariadb-10.5 1:10.5.18-0+deb11u1
 	- mariadb-10.3 <removed>
-	- mariadb-10.1 <removed>
+	- mariadb-10.1 <not-affected>
 	NOTE: Bug MariaDB: https://jira.mariadb.org/browse/MDEV-26354
 	NOTE: Bug MariaDB (duplicate): https://jira.mariadb.org/browse/MDEV-26437
 	NOTE: Bug MariaDB (main): https://jira.mariadb.org/browse/MDEV-24176



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d142d9ed072253ebaba6d9d127c90c994c8d057a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d142d9ed072253ebaba6d9d127c90c994c8d057a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240917/0047b850/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list