RHSA-2026:56007: Important: mysql8.4 security, bug fix, and enhancement update
Important: mysql8.4 security, bug fix, and enhancement update
Other sources
MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.Security Fix(es): mysql: Performance Schema unspecified vulnerability (CPU Jul 2026) (CVE-2026-61081) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47064) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47012) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60331) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60190) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60177) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-60145) mysql: DDL unspecified vulnerability (CPU Jul 2026) (CVE-2026-46936) mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60186) mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60315) mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026) (CVE-2026-61096) mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60163) mysql: InnoDB unspecified vulnerability (CPU Jul 2026) (CVE-2026-47052) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60188) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60184) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60185) mysql: JSON unspecified vulnerability (CPU Jul 2026) (CVE-2026-61109) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60191) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-61094) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60178) mysql: Group Replication GCS unspecified vulnerability (CPU Jul 2026) (CVE-2026-60332) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60189) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60747) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-47023) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60183) mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60316) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60187) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60585) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60182) Bug Fix(es) and Enhancement(s): [tracker] Rebase MySQL to 8.4.11 (JIRA:RHEL-188044) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/mysql8.4to a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-commonto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-debugsourceto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-devel-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-errmsgto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-libsto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-libs-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-serverto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-server-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-test-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4to a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-debugsourceto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-devel-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-libsto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-libs-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-serverto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-server-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-test-debuginfoto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-develto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-testto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-test-datato a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2 - Upgrade
Upgrade
redhat/mysql8.4-develto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
redhat/mysql8.4-testto a version that resolves this vulnerability.Fixed in 8.4.11-1.el10_2.aa - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Fixed in 8.4.11Patch RHEL-188044 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-61081 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60177 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60178 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60182 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60183 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-46936 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60332 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60163 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60186 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-47052 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-61109 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-47012 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-47064 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60145 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-61096 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-47023 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60184 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60185 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60187 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60188 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60189 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60190 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60191 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60331 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60585 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60747 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-61094 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60315 - Upgrade
Upgrade
mysqlto a version that resolves this vulnerability.Patch CVE-2026-60316
Event History
Frequently Asked Questions
Which installed packages should be included in update scoping?
The advisory covers Red Hat mysql8.4 packages, including mysql8.4, mysql8.4-libs, mysql8.4-server, and associated debuginfo, debugsource, and development debuginfo packages.
Which MySQL components are implicated by the listed fixes?
The listed security fixes affect multiple MySQL subsystems, including Performance Schema, Optimizer, Replication, Clone Plugin, DDL, Group Replication Plugin, X Plugin, and Pluggable Authentication. Systems using these MySQL components should be prioritized for review.
How can I determine whether a system needs this update?
Review systems with installed Red Hat mysql8.4 packages against RHSA-2026:56007. The provided advisory data does not include fixed package version numbers or configuration-based indicators of exposure.