{"id":"ALSA-2021:1242","summary":"Important: mariadb:10.3 and mariadb-devel:10.3 security update","details":"MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL. \nThe following packages have been upgraded to a later upstream version: mariadb (10.3.28), galera (25.3.32).\nSecurity Fix(es):\n* mariadb: writable system variables allows a database user with SUPER privilege to execute arbitrary code as the system mysql user (CVE-2021-27928)\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","modified":"2026-02-04T04:07:32.542337Z","published":"2021-04-19T00:00:00Z","related":["CVE-2021-27928"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2021:1242"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-27928"},{"type":"REPORT","url":"https://bugzilla.redhat.com/1940909"},{"type":"ADVISORY","url":"https://errata.almalinux.org/8/ALSA-2021-1242.html"},{"type":"REPORT","url":"https://vulners.com/cve/CVE-2021-27928"}],"affected":[{"package":{"name":"Judy","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.6.0+2867+72759d2f"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.3.0+2028+5e3224e9"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.5.0+2632+14ced695"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.6.0+2761+593e5e59"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.6.0+3072+3c630e87"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.6.0+2867+72759d2f"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"Judy-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/Judy-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.5-18.module_el8.3.0+2028+5e3224e9"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"asio-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/asio-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.10.8-7.module_el8.6.0+2867+72759d2f"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"asio-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/asio-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.10.8-7.module_el8.6.0+3072+3c630e87"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"galera","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/galera"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"25.3.32-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-backup","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-backup"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-common","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-embedded","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-embedded"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-embedded-devel","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-embedded-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-errmsg","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-errmsg"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-gssapi-server","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-gssapi-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-oqgraph-engine","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-oqgraph-engine"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-server","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-server-galera","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-server-galera"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-server-utils","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-server-utils"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}},{"package":{"name":"mariadb-test","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/mariadb-test"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3:10.3.28-1.module_el8.3.0+2177+7adc332a"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2021:1242.json"}}],"schema_version":"1.7.3"}