First published: Thu Jan 25 2024(Updated: )
Several security issues were discovered in MariaDB and this update includes new upstream MariaDB versions to fix these issues. MariaDB has been updated to 10.3.39 in Ubuntu 20.04 LTS, 10.6.16 in Ubuntu 22.04 LTS and 10.11.6 in Ubuntu 23.10. CVE-2022-47015 only affected the MariaDB packages in Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/mariadb-server | <1:10.11.6-0ubuntu0.23.10.2 | 1:10.11.6-0ubuntu0.23.10.2 |
Ubuntu | =23.10 | |
All of | ||
ubuntu/mariadb-server | <1:10.6.16-0ubuntu0.22.04.1 | 1:10.6.16-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/mariadb-server | <1:10.3.39-0ubuntu0.20.04.2 | 1:10.3.39-0ubuntu0.20.04.2 |
Ubuntu | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-6600-1 is considered to be significant due to the nature of the vulnerabilities affecting MariaDB.
To fix USN-6600-1, update the MariaDB package to the latest versions appropriate for your Ubuntu release.
USN-6600-1 affects MariaDB versions prior to 10.3.39, 10.6.16, and 10.11.6 for Ubuntu 20.04, 22.04, and 23.10 respectively.
The vulnerabilities in USN-6600-1 may lead to data breaches, data corruption, or denial of service.
Yes, USN-6600-1 addresses vulnerabilities including CVE-2022-47015 and CVE-2023-22084.