{"id":"MGASA-2015-0445","summary":"Updated mariadb packages fix security vulnerabilities","details":"This update provides the upstream 10.0.22 maintenance release and fixes\nthe following security issues:\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect availability\nvia unknown vectors related to Server : Partition, a different vulnerability\nthan CVE-2015-4792. (CVE-2015-4802)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect availability\nvia vectors related to Server : DDL. (CVE-2015-4815)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect\nconfidentiality via unknown vectors related to Server : Types.\n(CVE-2015-4826)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect integrity\nvia unknown vectors related to Server : Security : Privileges.\n(CVE-2015-4830)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and\n5.6.26 and earlier, allows remote authenticated users to affect availability\nvia unknown vectors related to Server : SP. (CVE-2015-4836)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and\n5.6.26 and earlier, allows remote authenticated users to affect availability\nvia vectors related to DML, a different vulnerability than CVE-2015-4913.\n(CVE-2015-4858)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and\n5.6.26 and earlier, allows remote authenticated users to affect availability\nvia unknown vectors related to Server : InnoDB. (CVE-2015-4861)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and\n5.6.26 and earlier, allows remote authenticated users to affect availability\nvia unknown vectors related to Server : Parser. (CVE-2015-4870)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect availability\nvia vectors related to Server : DML, a different vulnerability than\nCVE-2015-4858. (CVE-2015-4913)\n\nUnspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and\n5.6.26 and earlier allows remote authenticated users to affect availability\nvia unknown vectors related to Server : Partition, a different vulnerability\nthan CVE-2015-4802. (CVE-2015-4792)\n\nFor other fixes in this update, see the referenced release notes.\n","modified":"2026-04-16T06:26:16.308083551Z","published":"2015-11-16T21:36:58Z","upstream":["CVE-2015-4792","CVE-2015-4802","CVE-2015-4815","CVE-2015-4826","CVE-2015-4830","CVE-2015-4836","CVE-2015-4858","CVE-2015-4861","CVE-2015-4870","CVE-2015-4913"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2015-0445.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=17065"},{"type":"WEB","url":"https://mariadb.com/kb/en/mariadb/mariadb-10022-release-notes"}],"affected":[{"package":{"name":"mariadb","ecosystem":"Mageia:5","purl":"pkg:rpm/mageia/mariadb?arch=source&distro=mageia-5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.0.22-1.mga5"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0445.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}