FlawAtlas
Search the atlas
SUSE-SU-2021:3948-1 Not scored

Security update for mariadb

This update for mariadb fixes the following issue: - Update to 10.2.41: - CVE-2021-35604: Fixed InnoDB vulnerability that allowed an high privileged attacker with network access via multiple protocols to compromise MySQL (bsc#1192497). - Add missing dependency to liblz4 to enable lz4 compression for INNODB (bsc#1186031). - Add a 'mysql-user.conf' file to let 'systemd' generate mysql user in containers. (bsc#1173028)

Exploit probability Not scored
Published December 6, 2021
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Enterprise Storage 6 mariadb
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS mariadb
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS mariadb
SUSE:Linux Enterprise High Performance Computing 15-ESPOS mariadb
SUSE:Linux Enterprise High Performance Computing 15-LTSS mariadb
SUSE:Linux Enterprise Server 15 SP1-BCL mariadb
SUSE:Linux Enterprise Server 15 SP1-LTSS mariadb
SUSE:Linux Enterprise Server 15-LTSS mariadb
SUSE:Linux Enterprise Server for SAP Applications 15 mariadb
SUSE:Linux Enterprise Server for SAP Applications 15 SP1 mariadb

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2021:3948-1

This update for mariadb fixes the following issue: - Update to 10.2.41: - CVE-2021-35604: Fixed InnoDB vulnerability that allowed an high privileged attacker with network access via multiple protocols to compromise MySQL (bsc#1192497). - Add missing dependency to liblz4 to enable lz4 compression for INNODB (bsc#1186031). - Add a 'mysql-user.conf' file to let 'systemd' generate mysql user in containers. (bsc#1173028)

View original source

05 / REFERENCES

Further evidence