RHSA-2026:56007: Important: mysql8.4 security, bug fix, and enhancement update

Published Aug 18, 2026
·
Updated

Important: mysql8.4 security, bug fix, and enhancement update

Other sources

MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.Security Fix(es): mysql: Performance Schema unspecified vulnerability (CPU Jul 2026) (CVE-2026-61081) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47064) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47012) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60331) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60190) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60177) mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-60145) mysql: DDL unspecified vulnerability (CPU Jul 2026) (CVE-2026-46936) mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60186) mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60315) mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026) (CVE-2026-61096) mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60163) mysql: InnoDB unspecified vulnerability (CPU Jul 2026) (CVE-2026-47052) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60188) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60184) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60185) mysql: JSON unspecified vulnerability (CPU Jul 2026) (CVE-2026-61109) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60191) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-61094) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60178) mysql: Group Replication GCS unspecified vulnerability (CPU Jul 2026) (CVE-2026-60332) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60189) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60747) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-47023) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60183) mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60316) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60187) mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60585) mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60182) Bug Fix(es) and Enhancement(s): [tracker] Rebase MySQL to 8.4.11 (JIRA:RHEL-188044) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Red Hat

Affected Software

71 affected componentsFixes available
Red Hat Red Hat Enterprise Linux for x86_64 - 4 years of updates
Red Hat Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Update Support
Red Hat Red Hat Enterprise Linux for x86_64
Red Hat Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support
Red Hat Red Hat Enterprise Linux for IBM z Systems
Red Hat Red Hat Enterprise Linux for ARM 64
Red Hat Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle
Red Hat Red Hat CodeReady Linux Builder for x86_64
Red Hat Red Hat Enterprise Linux for ARM 64 - 4 years of updates
Red Hat Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Red Hat CodeReady Linux Builder for IBM z Systems
Red Hat Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support
Red Hat Red Hat Enterprise Linux for Power, little endian - 4 years of support
Red Hat Red Hat CodeReady Linux Builder for Power, little endian
Red Hat Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle
Red Hat Red Hat Enterprise Linux for Power, little endian
Red Hat Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle
Red Hat Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support
Red Hat Red Hat Enterprise Linux for IBM z Systems - 4 years of updates
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Life Cycle
Red Hat Red Hat CodeReady Linux Builder for ARM 64
redhat/mysql8.4<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-common<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debugsource<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-devel-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-errmsg<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debugsource<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-devel-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-debugsource<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-devel-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-libs-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-server-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test-debuginfo<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-debuginfo<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-debugsource<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-devel-debuginfo<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-libs<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-libs-debuginfo<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-server<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-server-debuginfo<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-test-debuginfo<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-devel<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test-data<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-devel<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-devel<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-test<8.4.11-1.el10_2.aa
8.4.11-1.el10_2.aa
redhat/mysql8.4-devel<8.4.11-1.el10_2
8.4.11-1.el10_2
redhat/mysql8.4-test<8.4.11-1.el10_2
8.4.11-1.el10_2

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade redhat/mysql8.4 to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  2. Upgrade

    Upgrade redhat/mysql8.4-common to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  3. Upgrade

    Upgrade redhat/mysql8.4-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  4. Upgrade

    Upgrade redhat/mysql8.4-debugsource to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  5. Upgrade

    Upgrade redhat/mysql8.4-devel-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  6. Upgrade

    Upgrade redhat/mysql8.4-errmsg to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  7. Upgrade

    Upgrade redhat/mysql8.4-libs to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  8. Upgrade

    Upgrade redhat/mysql8.4-libs-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  9. Upgrade

    Upgrade redhat/mysql8.4-server to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  10. Upgrade

    Upgrade redhat/mysql8.4-server-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  11. Upgrade

    Upgrade redhat/mysql8.4-test-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  12. Upgrade

    Upgrade redhat/mysql8.4 to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  13. Upgrade

    Upgrade redhat/mysql8.4-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  14. Upgrade

    Upgrade redhat/mysql8.4-debugsource to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  15. Upgrade

    Upgrade redhat/mysql8.4-devel-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  16. Upgrade

    Upgrade redhat/mysql8.4-libs to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  17. Upgrade

    Upgrade redhat/mysql8.4-libs-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  18. Upgrade

    Upgrade redhat/mysql8.4-server to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  19. Upgrade

    Upgrade redhat/mysql8.4-server-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  20. Upgrade

    Upgrade redhat/mysql8.4-test-debuginfo to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  21. Upgrade

    Upgrade redhat/mysql8.4-devel to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  22. Upgrade

    Upgrade redhat/mysql8.4-test to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  23. Upgrade

    Upgrade redhat/mysql8.4-test-data to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2
  24. Upgrade

    Upgrade redhat/mysql8.4-devel to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  25. Upgrade

    Upgrade redhat/mysql8.4-test to a version that resolves this vulnerability.

    Fixed in 8.4.11-1.el10_2.aa
  26. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Fixed in 8.4.11Patch RHEL-188044
  27. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-61081
  28. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60177
  29. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60178
  30. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60182
  31. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60183
  32. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-46936
  33. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60332
  34. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60163
  35. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60186
  36. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-47052
  37. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-61109
  38. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-47012
  39. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-47064
  40. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60145
  41. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-61096
  42. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-47023
  43. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60184
  44. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60185
  45. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60187
  46. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60188
  47. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60189
  48. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60190
  49. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60191
  50. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60331
  51. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60585
  52. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60747
  53. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-61094
  54. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60315
  55. Upgrade

    Upgrade mysql to a version that resolves this vulnerability.

    Patch CVE-2026-60316

Event History

Aug 18, 2026
Advisory Published
via Red Hat·12:00 AM
Data Sourced
via Red Hat·12:00 AM
RemedyDescriptionAffected Software
Advisory Published
via Red Hat·07:20 AM
Data Sourced
via Red Hat·07:20 AM
Severity

Frequently Asked Questions

1

Which installed packages should be included in update scoping?

The advisory covers Red Hat mysql8.4 packages, including mysql8.4, mysql8.4-libs, mysql8.4-server, and associated debuginfo, debugsource, and development debuginfo packages.

2

Which MySQL components are implicated by the listed fixes?

The listed security fixes affect multiple MySQL subsystems, including Performance Schema, Optimizer, Replication, Clone Plugin, DDL, Group Replication Plugin, X Plugin, and Pluggable Authentication. Systems using these MySQL components should be prioritized for review.

3

How can I determine whether a system needs this update?

Review systems with installed Red Hat mysql8.4 packages against RHSA-2026:56007. The provided advisory data does not include fixed package version numbers or configuration-based indicators of exposure.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203