RHSA-2026:52848: Important: mariadb:10.11 security update
Important: mariadb:10.11 security update
Other sources
MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL. Security Fix(es): mariadb: MariaDB Server: Arbitrary code execution via wsrepnotifycmd (CVE-2026-49261) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/galerato a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850 - Upgrade
Upgrade
redhat/mariadbto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/galera-debuginfoto a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850 - Upgrade
Upgrade
redhat/galera-debugsourceto a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850 - Upgrade
Upgrade
redhat/mariadb-backupto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-backup-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-commonto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-debugsourceto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-develto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-embeddedto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-embedded-develto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-errmsgto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-gssapi-serverto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-gssapi-server-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-oqgraph-engineto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-oqgraph-engine-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-pamto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-pam-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-serverto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-server-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-server-galerato a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-server-utilsto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-server-utils-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-testto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/mariadb-test-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf - Upgrade
Upgrade
redhat/galerato a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850.aa - Upgrade
Upgrade
redhat/galera-debuginfoto a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850.aa - Upgrade
Upgrade
redhat/galera-debugsourceto a version that resolves this vulnerability.Fixed in 26.4.16-1.module+el9.4.0+21205+b026b850.aa - Upgrade
Upgrade
redhat/mariadbto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-backupto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-backup-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-commonto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-debugsourceto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-develto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-embeddedto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-embedded-develto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-errmsgto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-gssapi-serverto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-gssapi-server-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-oqgraph-engineto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-oqgraph-engine-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-pamto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-pam-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-serverto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-server-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-server-galerato a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-server-utilsto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-server-utils-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-testto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
redhat/mariadb-test-debuginfoto a version that resolves this vulnerability.Fixed in 10.11.18-1.module+el9.4.0+24597+6b9092cf.aa - Upgrade
Upgrade
mariadbto a version that resolves this vulnerability.Fixed in 10.11Patch CVE-2026-49261
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:52848?
The severity level of RHSA-2026:52848 is high, rated at 7.
What vulnerabilities are fixed in RHSA-2026:52848?
RHSA-2026:52848 addresses a vulnerability in MariaDB Server that allows for arbitrary code execution via wsrep_notify_cmd (CVE-2026-49261).
How do I fix RHSA-2026:52848?
To fix RHSA-2026:52848, update your MariaDB packages to the latest version provided in the security update.
What software is affected by RHSA-2026:52848?
Affected software includes redhat/galera, redhat/mariadb, and related packages.
When was RHSA-2026:52848 published?
RHSA-2026:52848 was published on August 10, 2026.