rh-mariadb101-galera-25.3.12-12.AXS4, rh-mariadb101-mariadb-10.1.29-3.AXS4

エラータID: AXSA:2018-2644:01

リリース日: 
2018/03/31 Saturday - 19:20
題名: 
rh-mariadb101-galera-25.3.12-12.AXS4, rh-mariadb101-mariadb-10.1.29-3.AXS4
影響のあるチャネル: 
Asianux Server 4 for x86_64
Severity: 
Moderate
Description: 

MariaDB is a multi-user, multi-threaded SQL database server. For all practical
purposes, MariaDB is binary-compatible with MySQL.

The following packages have been upgraded to a later upstream version:
rh-mariadb101-mariadb (10.1.29). (BZ#1463417, BZ#1517327)

Security Fix(es):

* mysql: insecure error log file handling in mysqld_safe (CPU Oct 2016)
(CVE-2016-5617, CVE-2016-6664)

* mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2017)
(CVE-2017-3238)

* mysql: Server: Charsets unspecified vulnerability (CPU Jan 2017)
(CVE-2017-3243)

* mysql: Server: DML unspecified vulnerability (CPU Jan 2017) (CVE-2017-3244)

* mysql: Server: InnoDB unspecified vulnerability (CPU Jan 2017) (CVE-2017-3257)

* mysql: Server: DDL unspecified vulnerability (CPU Jan 2017) (CVE-2017-3258)

* mysql: unsafe chmod/chown use in init script (CPU Jan 2017) (CVE-2017-3265)

* mysql: unrestricted mysqld_safe's ledir (CPU Jan 2017) (CVE-2017-3291)

* mysql: Server: DML unspecified vulnerability (CPU Apr 2017) (CVE-2017-3308)

* mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2017)
(CVE-2017-3309)

* mysql: insecure error log file handling in mysqld_safe, incomplete
CVE-2016-6664 fix (CPU Jan 2017) (CVE-2017-3312)

* mysql: Server: MyISAM unspecified vulnerability (CPU Jan 2017) (CVE-2017-3313)

* mysql: Logging unspecified vulnerability (CPU Jan 2017) (CVE-2017-3317)

* mysql: Server: Error Handling unspecified vulnerability (CPU Jan 2017)
(CVE-2017-3318)

* mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2017)
(CVE-2017-3453)

* mysql: Server: DML unspecified vulnerability (CPU Apr 2017) (CVE-2017-3456)

* mysql: Server: DDL unspecified vulnerability (CPU Apr 2017) (CVE-2017-3464)

* mysql: Client programs unspecified vulnerability (CPU Jul 2017)
(CVE-2017-3636)

* mysql: Server: DML unspecified vulnerability (CPU Jul 2017) (CVE-2017-3641)

* mysql: Server: Replication unspecified vulnerability (CPU Oct 2017)
(CVE-2017-10268)

* mysql: Server: InnoDB unspecified vulnerability (CPU Oct 2017)
(CVE-2017-10286)

* mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2017)
(CVE-2017-10378)

* mysql: Client programs unspecified vulnerability (CPU Oct 2017)
(CVE-2017-10379)

* mysql: Server: DDL unspecified vulnerability (CPU Oct 2017) (CVE-2017-10384)

* mysql: prepared statement handle use-after-free after disconnect
(CVE-2017-3302)

* mysql: Server: DDL unspecified vulnerability (CPU Jul 2017) (CVE-2017-3653)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in the
References section.

Bug Fix(es):

* Previously, a syntax error in the Galera Arbitrator SysV init script prevented
the garbd daemon from being started when the SysV init script was used. With
this update, the definition of the main daemon binary in the SysV init script
has been fixed, and the described problem no longer occurs. (BZ#1466473)

* Prior to this update, the scl macros were not set for the
rh-mariadb101-mariadb@.service file, which consequently made the service file
unusable. This bug has been fixed, and rh-mariadb101-mariadb@.service now works
as expected. (BZ#1485995)

CVE-2016-5617
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-6664.
Reason: This candidate is a reservation duplicate of CVE-2016-6664. Notes: All
CVE users should reference CVE-2016-6664 instead of this candidate. All
references and descriptions in this candidate have been removed to prevent
accidental usage.
CVE-2016-6664
mysqld_safe in Oracle MySQL through 5.5.51, 5.6.x through 5.6.32, and 5.7.x
through 5.7.14; MariaDB; Percona Server before 5.5.51-38.2, 5.6.x before
5.6.32-78-1, and 5.7.x before 5.7.14-8; and Percona XtraDB Cluster before
5.5.41-37.0, 5.6.x before 5.6.32-25.17, and 5.7.x before 5.7.14-26.17, when
using file-based logging, allows local users with access to the mysql account to
gain root privileges via a symlink attack on error logs and possibly other
files.
CVE-2017-3238
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Optimizer). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS v3.0 Base Score 6.5 (Availability impacts).
CVE-2017-3243
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Charsets). Supported versions that are affected are 5.5.53 and earlier.
Difficult to exploit vulnerability allows high privileged attacker with network
access via multiple protocols to compromise MySQL Server. Successful attacks of
this vulnerability can result in unauthorized ability to cause a hang or
frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score
4.4 (Availability impacts).
CVE-2017-3244
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DML). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS v3.0 Base Score 6.5 (Availability impacts).
CVE-2017-3257
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: InnoDB). Supported versions that are affected are 5.6.34 and
earlier5.7.16 and earlier. Easily exploitable vulnerability allows low
privileged attacker with network access via multiple protocols to compromise
MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS v3.0 Base Score 6.5 (Availability impacts).
CVE-2017-3258
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DDL). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS v3.0 Base Score 6.5 (Availability impacts).
CVE-2017-3265
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Packaging). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability
allows high privileged attacker with logon to the infrastructure where MySQL
Server executes to compromise MySQL Server. Successful attacks require human
interaction from a person other than the attacker. Successful attacks of this
vulnerability can result in unauthorized access to critical data or complete
access to all MySQL Server accessible data and unauthorized ability to cause a
hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0
Base Score 5.6 (Confidentiality and Availability impacts).
CVE-2017-3291
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Packaging). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability
allows high privileged attacker with logon to the infrastructure where MySQL
Server executes to compromise MySQL Server. Successful attacks require human
interaction from a person other than the attacker. Successful attacks of this
vulnerability can result in takeover of MySQL Server. CVSS v3.0 Base Score 6.3
(Confidentiality, Integrity and Availability impacts).
CVE-2017-3302
Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5
and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and
10.2.x through 10.2.3.
CVE-2017-3308
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DML). Supported versions that are affected are 5.5.54 and earlier,
5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may
significantly impact additional products. Successful attacks of this
vulnerability can result in unauthorized ability to cause a hang or frequently
repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 7.7
(Availability impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).
CVE-2017-3309
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Optimizer). Supported versions that are affected are 5.5.54 and earlier,
5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may
significantly impact additional products. Successful attacks of this
vulnerability can result in unauthorized ability to cause a hang or frequently
repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 7.7
(Availability impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).
CVE-2017-3312
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Packaging). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability
allows low privileged attacker with logon to the infrastructure where MySQL
Server executes to compromise MySQL Server. Successful attacks require human
interaction from a person other than the attacker. Successful attacks of this
vulnerability can result in takeover of MySQL Server. CVSS v3.0 Base Score 6.7
(Confidentiality, Integrity and Availability impacts).
CVE-2017-3313
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: MyISAM). Supported versions that are affected are 5.5.53 and earlier,
5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability
allows low privileged attacker with logon to the infrastructure where MySQL
Server executes to compromise MySQL Server. Successful attacks of this
vulnerability can result in unauthorized access to critical data or complete
access to all MySQL Server accessible data. CVSS v3.0 Base Score 4.7
(Confidentiality impacts).
CVE-2017-3317
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Logging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34
and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows
high privileged attacker with logon to the infrastructure where MySQL Server
executes to compromise MySQL Server. Successful attacks require human
interaction from a person other than the attacker. Successful attacks of this
vulnerability can result in unauthorized ability to cause a hang or frequently
repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score 4.0
(Availability impacts).
CVE-2017-3318
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Error Handling). Supported versions that are affected are 5.5.53 and
earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit
vulnerability allows high privileged attacker with logon to the infrastructure
where MySQL Server executes to compromise MySQL Server. Successful attacks
require human interaction from a person other than the attacker. Successful
attacks of this vulnerability can result in unauthorized access to critical data
or complete access to all MySQL Server accessible data. CVSS v3.0 Base Score 4.0
(Confidentiality impacts).
CVE-2017-3453
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Optimizer). Supported versions that are affected are 5.5.54 and earlier,
5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS
Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-3456
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DML). Supported versions that are affected are 5.5.54 and earlier,
5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability
allows high privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS
Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-3464
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DDL). Supported versions that are affected are 5.5.54 and earlier,
5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized update, insert or delete access to some of MySQL Server accessible
data. CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).
CVE-2017-3636
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Client programs). Supported versions that are affected are 5.5.56 and earlier
and 5.6.36 and earlier. Easily exploitable vulnerability allows low privileged
attacker with logon to the infrastructure where MySQL Server executes to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized update, insert or delete access to some of MySQL Server accessible
data as well as unauthorized read access to a subset of MySQL Server accessible
data and unauthorized ability to cause a partial denial of service (partial DOS)
of MySQL Server. CVSS 3.0 Base Score 5.3 (Confidentiality, Integrity and
Availability impacts). CVSS Vector:
(CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).
CVE-2017-3641
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DML). Supported versions that are affected are 5.5.56 and earlier,
5.6.36 and earlier and 5.7.18 and earlier. Easily exploitable vulnerability
allows high privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS
Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-3653
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DDL). Supported versions that are affected are 5.5.56 and earlier,
5.6.36 and earlier and 5.7.18 and earlier. Difficult to exploit vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized update, insert or delete access to some of MySQL Server accessible
data. CVSS 3.0 Base Score 3.1 (Integrity impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N).
CVE-2017-10268
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Replication). Supported versions that are affected are 5.5.57 and
earlier, 5.6.37 and earlier and 5.7.19 and earlier. Difficult to exploit
vulnerability allows high privileged attacker with logon to the infrastructure
where MySQL Server executes to compromise MySQL Server. Successful attacks of
this vulnerability can result in unauthorized access to critical data or
complete access to all MySQL Server accessible data. CVSS 3.0 Base Score 4.1
(Confidentiality impacts). CVSS Vector:
(CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N).
CVE-2017-10286
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: InnoDB). Supported versions that are affected are 5.6.37 and earlier and
5.7.19 and earlier. Difficult to exploit vulnerability allows high privileged
attacker with network access via multiple protocols to compromise MySQL Server.
Successful attacks of this vulnerability can result in unauthorized ability to
cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS
3.0 Base Score 4.4 (Availability impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-10378
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: Optimizer). Supported versions that are affected are 5.5.57 and earlier,
5.6.37 and earlier and 5.7.11 and earlier. Easily exploitable vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS
Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-10379
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Client programs). Supported versions that are affected are 5.5.57 and earlier,
5.6.37 and earlier and 5.7.19 and earlier. Easily exploitable vulnerability
allows low privileged attacker with network access via multiple protocols to
compromise MySQL Server. Successful attacks of this vulnerability can result in
unauthorized access to critical data or complete access to all MySQL Server
accessible data. CVSS 3.0 Base Score 6.5 (Confidentiality impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).
CVE-2017-10384
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:
Server: DDL). Supported versions that are affected are 5.5.57 and earlier 5.6.37
and earlier 5.7.19 and earlier. Easily exploitable vulnerability allows low
privileged attacker with network access via multiple protocols to compromise
MySQL Server. Successful attacks of this vulnerability can result in
unauthorized ability to cause a hang or frequently repeatable crash (complete
DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS
Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. rh-mariadb101-galera-25.3.12-12.AXS4.src.rpm
    MD5: 59c3b5360b49693624be4926759f1424
    SHA-256: 3f5b6246f05b3b8b482be9388a098f60866e65bf83eeea58af027ff93ca93e88
    Size: 2.86 MB
  2. rh-mariadb101-mariadb-10.1.29-3.AXS4.src.rpm
    MD5: 6cf66b57fc35ed22da803c09f889143d
    SHA-256: ccb8abd01f2353323e71b96e888419344b1ecebe086a1bf4f9867a8a70635bcb
    Size: 59.39 MB

Asianux Server 4 for x86_64
  1. rh-mariadb101-galera-25.3.12-12.AXS4.x86_64.rpm
    MD5: 0a8ba46a7360f936fe9747b04862cef8
    SHA-256: e24ecd5017a22a29e430b6f4bd060fc8da4d5ab177d7520dc5cd8a77967e5b35
    Size: 1.26 MB
  2. rh-mariadb101-mariadb-10.1.29-3.AXS4.x86_64.rpm
    MD5: 59eec261d3ea482c23eb09cc72cad4cc
    SHA-256: 86481da43d8d37a3bbd5203a143a03de4115b577932958c871a3310ca1e10920
    Size: 7.07 MB
  3. rh-mariadb101-mariadb-bench-10.1.29-3.AXS4.x86_64.rpm
    MD5: 604f376b677f9f1717e5a795dab8232c
    SHA-256: 544545647c7b3158d4e9423bedc60f2c0f66dbee7a6beb75645ebb2d73a50764
    Size: 407.68 kB
  4. rh-mariadb101-mariadb-common-10.1.29-3.AXS4.x86_64.rpm
    MD5: ade07fbca0851fa720ccc1f8f442d81d
    SHA-256: 9958fc4b903885df61136e51b729e5f316b12e3108e95d501cea216fff20635a
    Size: 68.55 kB
  5. rh-mariadb101-mariadb-config-10.1.29-3.AXS4.x86_64.rpm
    MD5: 1631fce4bbbc5b33e62f79ef8a08a7bb
    SHA-256: cf49345d099c62cbe8e755b574e5c4dd5ce982a04c61b9a30d8658804af40a7b
    Size: 25.93 kB
  6. rh-mariadb101-mariadb-devel-10.1.29-3.AXS4.x86_64.rpm
    MD5: 722379143cc047becbcd61e9563b3b15
    SHA-256: d2da714eb39079d9f365eca54712d77ec2652975f51a67b2d9deeb5ec84d6488
    Size: 942.21 kB
  7. rh-mariadb101-mariadb-errmsg-10.1.29-3.AXS4.x86_64.rpm
    MD5: f6306104235381c945cc49068b86d79e
    SHA-256: a9f7bc17e68514c35e8f754a7f59b8649b51d8d5588b194152cce05198eb1422
    Size: 252.09 kB
  8. rh-mariadb101-mariadb-oqgraph-engine-10.1.29-3.AXS4.x86_64.rpm
    MD5: 38727fb8aed1c53c262326d0c5b912c8
    SHA-256: aef9841a162a099f2b90d735f1f89f70dea7c6c9ec907ccdfb24ce5d32ca8ccf
    Size: 95.30 kB
  9. rh-mariadb101-mariadb-server-10.1.29-3.AXS4.x86_64.rpm
    MD5: 64a66003c7c734fb65328a9e17c21c85
    SHA-256: 3a16985a9f16456d649cd1d3d77ff6728cc0b3e2dd04265e2322e3a7e0b6aae9
    Size: 25.45 MB
  10. rh-mariadb101-mariadb-server-galera-10.1.29-3.AXS4.x86_64.rpm
    MD5: f669457e57b7843fd45b273b0ad8cc7b
    SHA-256: f8ccf85d0d9f17f2ca17cde68beb715ced94b319b8d9c0522b508b35b783688c
    Size: 39.65 kB
  11. rh-mariadb101-mariadb-test-10.1.29-3.AXS4.x86_64.rpm
    MD5: 0c0e41d64ed70241e62e50513d638be5
    SHA-256: 1daf4a3fd5efec8dd2dd0850ca222a190da3973f7eca122157c7e436e7097166
    Size: 11.75 MB