File _patchinfo of Package patchinfo.22997
<patchinfo incident="22997">
<issue tracker="bnc" id="1195334">VUL-1: CVE-2021-46658: mariadb,mariadb-100: save_window_function_values allows an application crash because of incorrect handling of with_window_func=true for a subquery.</issue>
<issue tracker="bnc" id="1195339">VUL-1: CVE-2021-46659: mariadb-100,mariadb: crash in st_select_lex::mark_as_dependent with VIEW, aggregate and subquery</issue>
<issue tracker="bnc" id="1195325">VUL-1: CVE-2021-46657: mariadb-100,mariadb: get_sort_by_table in MariaDB before 10.6.2 allows an application crash via certain subquery uses of ORDER BY.</issue>
<issue tracker="bnc" id="1196016">VUL-0: mariadb: 10.4.23 and 10.4.24 releases</issue>
<issue tracker="cve" id="2021-46661"/>
<issue tracker="cve" id="2021-46659"/>
<issue tracker="cve" id="2021-46658"/>
<issue tracker="cve" id="2021-46665"/>
<issue tracker="cve" id="2022-24051"/>
<issue tracker="cve" id="2021-46657"/>
<issue tracker="cve" id="2022-24048"/>
<issue tracker="cve" id="2022-24050"/>
<issue tracker="cve" id="2021-46663"/>
<issue tracker="cve" id="2021-46668"/>
<issue tracker="cve" id="2022-24052"/>
<issue tracker="cve" id="2021-46664"/>
<packager>dspinella</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for mariadb</summary>
<description>This update for mariadb fixes the following issues:
- Update to 10.2.43 (bsc#1196016):
10.2.43: CVE-2021-46665
CVE-2021-46664
CVE-2021-46661
CVE-2021-46668
CVE-2021-46663
10.2.42: CVE-2022-24052
CVE-2022-24051
CVE-2022-24050
CVE-2022-24048
CVE-2021-46659, bsc#1195339
- The following issues have already been fixed in this package but weren't
previously mentioned in the changes file:
CVE-2021-46658, bsc#1195334
CVE-2021-46657, bsc#1195325
</description>
</patchinfo>