{"id":"MGASA-2019-0224","summary":"Updated mariadb packages fix security vulnerabilities","details":"Updated mariadb packages fix security vulnerabilities:\n\nAn easily exploitable vulnerability allows high privileged attacker with\nnetwork access via multiple protocols to compromise mariadb server.\nSuccessful attacks of this vulnerability can result in unauthorized\nability to cause a hang or frequently repeatable crash (complete DOS)\n(CVE-2019-2737). \n\nAn easily exploitable vulnerability allows high privileged attacker with\nlogon to the infrastructure where mariadb server executes to compromise\nmariadb server. Successful attacks of this vulnerability can result in\nunauthorized ability to cause a hang or frequently repeatable crash\n(complete DOS) of mariadb server as well as unauthorized update, insert\nor delete access to some of mariadb server accessible data (CVE-2019-2739).\n\nAn easily exploitable vulnerability allows low privileged attacker with\nnetwork access via multiple protocols to compromise mariadb server.\nSuccessful attacks of this vulnerability can result in unauthorized ability\nto cause a hang or frequently repeatable crash (complete DOS) of mariadb\nserver (CVE-2019-2740). \n\nAn easily exploitable vulnerability allows high privileged attacker with\nnetwork access via multiple protocols to compromise mariadb server.\nSuccessful attacks of this vulnerability can result in unauthorized ability\nto cause a hang or frequently repeatable crash (complete DOS) of mariadb\nserver as well as unauthorized update, insert or delete access to some of\nmariadb server accessible data (CVE-2019-2758).\n\nAn easily exploitable vulnerability allows low privileged attacker with\nnetwork access via multiple protocols to compromise mariadb server.\nSuccessful attacks of this vulnerability can result in unauthorized ability\nto cause a hang or frequently repeatable crash (complete DOS) of mariadb\nserver (CVE-2019-2805).\n\nThis update also fixes issues with FULLTEXT INDEX, Encrypted temporary\ntables, Indexed virtual columns, Recovery & Mariabackup.\n","modified":"2026-03-25T17:45:26.039592Z","published":"2019-08-18T12:39:41Z","related":["CVE-2019-2737","CVE-2019-2739","CVE-2019-2740","CVE-2019-2758","CVE-2019-2805"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2019-0224.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=25210"},{"type":"REPORT","url":"https://mariadb.com/kb/en/library/mariadb-10317-release-notes/"}],"affected":[{"package":{"name":"mariadb","ecosystem":"Mageia:6","purl":"pkg:rpm/mageia/mariadb?arch=source&distro=mageia-6"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.1.41-1.mga6"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0224.json"}},{"package":{"name":"mariadb","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/mariadb?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.3.17-1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0224.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}