File _patchinfo of Package patchinfo.4765
<patchinfo incident="4765">
<issue id="1020868" tracker="bnc">VUL-0: [TRACKERBUG] mysql,mariadb: Oracle Critical Patch Update Jan 2017</issue>
<issue id="1020890" tracker="bnc">VUL-0: CVE-2017-3313: mariadb,mysql: unspecified vulnerability affecting the MyISAM component (CPU Jan 2017)</issue>
<issue id="1022428" tracker="bnc">VUL-0: CVE-2017-3302: mariadb: Use after free in libmysqlclient.so</issue>
<issue id="996821" tracker="bnc">mariadb failing test main.mysqld--help</issue>
<issue id="1020976" tracker="bnc">root umask 077 screws up the /etc/init.d/mysql init script</issue>
<issue id="1034911" tracker="bnc">VUL-0: mariadb: 10.0.30 security release</issue>
<issue id="2017-3302" tracker="cve" />
<issue id="2017-3313" tracker="cve" />
<category>security</category>
<rating>important</rating>
<packager>kstreitova</packager>
<description>
This update for mariadb fixes the following issues:
- update to MariaDB 10.0.30 GA
* notable changes:
* XtraDB updated to 5.6.35-80.0
* TokuDB updated to 5.6.35-80.0
* PCRE updated to 8.40
* MDEV-11027: better InnoDB crash recovery progress reporting
* MDEV-11520: improvements to how InnoDB data files are extended
* Improvements to InnoDB startup/shutdown to make it more robust
* MDEV-11233: fix for FULLTEXT index crash
* MDEV-6143: MariaDB Linux binary tarballs will now always untar
to directories that match their filename
* release notes and changelog:
* https://kb.askmonty.org/en/mariadb-10030-release-notes
* https://kb.askmonty.org/en/mariadb-10030-changelog
* fixes the following CVEs:
CVE-2017-3313: unspecified vulnerability affecting the MyISAM component [bsc#1020890]
CVE-2017-3302: Use after free in libmysqlclient.so [bsc#1022428]
- set the default umask to 077 in mysql-systemd-helper [bsc#1020976]
- [bsc#1034911] - tracker bug
* fixes also [bsc#1020868]</description>
<summary>Security update for mariadb</summary>
</patchinfo>