[SECURITY] Fedora 20 Update: mariadb-galera-5.5.40-2.fc20

updates at fedoraproject.org updates at fedoraproject.org
Wed Dec 3 01:02:24 UTC 2014


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2014-14791
2014-11-13 16:46:17
--------------------------------------------------------------------------------

Name        : mariadb-galera
Product     : Fedora 20
Version     : 5.5.40
Release     : 2.fc20
URL         : http://mariadb.org
Summary     : A community developed branch of MySQL
Description :
MariaDB is a community developed branch of MySQL.
MariaDB is a multi-user, multi-threaded SQL database server.
It is a client/server implementation consisting of a server daemon (mysqld)
and many different client programs and libraries. The base package
contains the standard MariaDB/MySQL client programs and generic MySQL files.

--------------------------------------------------------------------------------
Update Information:

Update to 5.5.40
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #882608 - CVE-2012-5615 mysql: Remote Preauth User Enumeration flaw
        https://bugzilla.redhat.com/show_bug.cgi?id=882608
  [ 2 ] Bug #1126271 - CVE-2014-4274 mysql: unspecified MyISAM temporary file issue fixed in 5.5.39 and 5.6.20
        https://bugzilla.redhat.com/show_bug.cgi?id=1126271
  [ 3 ] Bug #1153461 - CVE-2014-4287 mysql: unspecified vulnerability related to SERVER:CHARACTER SETS (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153461
  [ 4 ] Bug #1153462 - CVE-2014-6463 mysql: unspecified vulnerability related to SERVER:REPLICATION ROW FORMAT BINARY LOG DML (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153462
  [ 5 ] Bug #1153466 - CVE-2014-6478 mysql: unspecified vulnerability related to SERVER:SSL:yaSSL (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153466
  [ 6 ] Bug #1153467 - CVE-2014-6484 mysql: unspecified vulnerability related to SERVER:DML (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153467
  [ 7 ] Bug #1153485 - CVE-2014-6495 mysql: unspecified vulnerability related to SERVER:SSL:yaSSL (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153485
  [ 8 ] Bug #1153489 - CVE-2014-6505 mysql: unspecified vulnerability related to SERVER:MEMORY STORAGE ENGINE (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153489
  [ 9 ] Bug #1153491 - CVE-2014-6520 mysql: unspecified vulnerability related to SERVER:DDL (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153491
  [ 10 ] Bug #1153493 - CVE-2014-6530 mysql: unspecified vulnerability related to CLIENT:MYSQLDUMP (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153493
  [ 11 ] Bug #1153494 - CVE-2014-6551 mysql: unspecified vulnerability related to CLIENT:MYSQLADMIN (CPU October 2014)
        https://bugzilla.redhat.com/show_bug.cgi?id=1153494
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update mariadb-galera' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list