Mandriva Linux 安全性公告:mariadb (MDVSA-2015:091)

high Nessus Plugin ID 82344

概要

遠端 Mandriva Linux 主機缺少一或多個安全性更新。

說明

此更新提供 MariaDB 5.5.42,修正了數個安全性問題和其他錯誤。請參閱 Oracle 重要修補程式更新公告和 MariaDB 的版本資訊,進一步瞭解有關安全性弱點的資訊。

此外,將提供 jemalloc 套件,因其之前隨附於 mariadb 原始程式碼且已構建及使用,但從 5.5.40 開始,已從 mariadb 原始程式碼移除。

解決方案

更新受影響的套件。

另請參閱

http://www.nessus.org/u?ef1fc2a6

http://www.nessus.org/u?17c46362

http://www.nessus.org/u?75c6cafb

http://www.nessus.org/u?1ada40cc

https://mariadb.com/kb/en/library/mariadb-5535-release-notes/

https://mariadb.com/kb/en/library/mariadb-5536-release-notes/

https://mariadb.com/kb/en/library/mariadb-5537-release-notes/

https://mariadb.com/kb/en/library/mariadb-5538-release-notes/

https://mariadb.com/kb/en/library/mariadb-5539-release-notes/

https://mariadb.com/kb/en/library/mariadb-5540-release-notes/

https://mariadb.com/kb/en/library/mariadb-5541-release-notes/

https://mariadb.com/kb/en/library/mariadb-5542-release-notes/

Plugin 詳細資訊

嚴重性: High

ID: 82344

檔案名稱: mandriva_MDVSA-2015-091.nasl

版本: 1.8

類型: local

已發布: 2015/3/30

已更新: 2021/1/14

支援的感應器: Nessus

風險資訊

VPR

風險因素: Medium

分數: 5.8

CVSS v2

風險因素: High

基本分數: 8

媒介: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:C

弱點資訊

CPE: p-cpe:/a:mandriva:linux:lib64jemalloc-devel, p-cpe:/a:mandriva:linux:lib64jemalloc1, p-cpe:/a:mandriva:linux:lib64mariadb-devel, p-cpe:/a:mandriva:linux:lib64mariadb-embedded-devel, p-cpe:/a:mandriva:linux:lib64mariadb-embedded18, p-cpe:/a:mandriva:linux:lib64mariadb18, p-cpe:/a:mandriva:linux:mariadb, p-cpe:/a:mandriva:linux:mariadb-bench, p-cpe:/a:mandriva:linux:mariadb-client, p-cpe:/a:mandriva:linux:mariadb-common, p-cpe:/a:mandriva:linux:mariadb-common-core, p-cpe:/a:mandriva:linux:mariadb-core, p-cpe:/a:mandriva:linux:mariadb-extra, p-cpe:/a:mandriva:linux:mariadb-feedback, p-cpe:/a:mandriva:linux:mariadb-obsolete, p-cpe:/a:mandriva:linux:mysql-mariadb, cpe:/o:mandriva:business_server:2

必要的 KB 項目: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

修補程式發佈日期: 2015/3/28

參考資訊

CVE: CVE-2012-5615, CVE-2013-5908, CVE-2014-0384, CVE-2014-0401, CVE-2014-0412, CVE-2014-0420, CVE-2014-0437, CVE-2014-2419, CVE-2014-2430, CVE-2014-2431, CVE-2014-2432, CVE-2014-2436, CVE-2014-2438, CVE-2014-2440, CVE-2014-2494, CVE-2014-4207, CVE-2014-4243, CVE-2014-4258, CVE-2014-4260, CVE-2014-4274, CVE-2014-4287, CVE-2014-6463, CVE-2014-6464, CVE-2014-6469, CVE-2014-6478, CVE-2014-6484, CVE-2014-6491, CVE-2014-6494, CVE-2014-6495, CVE-2014-6496, CVE-2014-6500, CVE-2014-6505, CVE-2014-6507, CVE-2014-6520, CVE-2014-6530, CVE-2014-6551, CVE-2014-6555, CVE-2014-6559, CVE-2014-6568, CVE-2015-0374, CVE-2015-0381, CVE-2015-0382, CVE-2015-0391, CVE-2015-0411, CVE-2015-0432

MDVSA: 2015:091