ALSA-2021:1242
Dashboard / Vulnerabilities / ALSA-2021:1242
Summary: Important: mariadb:10.3 and mariadb-devel:10.3 security update
Details: MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL. The following packages have been upgraded to a later upstream version: mariadb (10.3.28), galera (25.3.32). Security Fix(es): * mariadb: writable system variables allows a database user with SUPER privilege to execute arbitrary code as the system mysql user (CVE-2021-27928) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References: https://access.redhat.com/errata/RHSA-2021:1242, https://access.redhat.com/security/cve/CVE-2021-27928, https://bugzilla.redhat.com/1940909, https://errata.almalinux.org/8/ALSA-2021-1242.html, https://vulners.com/cve/CVE-2021-27928
Affected packages
Package
Name: Judy
Purl: pkg:rpm/almalinux/Judy
Affected ranges
Type: ECOSYSTEM
Events:
