Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 16 May 2020 09:17:26 +0000 (UTC)
From:      Bernard Spil <brnrd@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r535368 - head/security/vuxml
Message-ID:  <202005160917.04G9HQUo050285@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: brnrd
Date: Sat May 16 09:17:26 2020
New Revision: 535368
URL: https://svnweb.freebsd.org/changeset/ports/535368

Log:
  security/vuxml: MariaDB vulnerabilities

Modified:
  head/security/vuxml/vuln.xml

Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml	Sat May 16 09:04:16 2020	(r535367)
+++ head/security/vuxml/vuln.xml	Sat May 16 09:17:26 2020	(r535368)
@@ -987,6 +987,22 @@ If successful, a malicious third party could trigger e
     <topic>MySQL Server -- Multiple vulerabilities</topic>
     <affects>
       <package>
+	<name>mariadb101-server</name>
+	<range><lt>10.1.45</lt></range>
+      </package>
+      <package>
+	<name>mariadb102-server</name>
+	<range><lt>10.2.32</lt></range>
+      </package>
+      <package>
+	<name>mariadb103-server</name>
+	<range><lt>10.3.23</lt></range>
+      </package>  
+      <package>
+	<name>mariadb104-server</name>
+	<range><lt>10.4.13</lt></range>
+      </package>
+      <package>
 	<name>mysql56-server</name>
 	<range><lt>5.6.48</lt></range>
       </package>
@@ -1019,6 +1035,7 @@ If successful, a malicious third party could trigger e
 	    Oracle MySQL. 9 of these vulnerabilities may be remotely exploitable
 	    without authentication, i.e., may be exploited over a network without
 	    requiring user credentials.</p>
+	  <p>MariaDB reports 4 of these vulnerabilities exist in their software</p>
 	</blockquote>
       </body>
     </description>
@@ -1064,6 +1081,7 @@ If successful, a malicious third party could trigger e
     <dates>
       <discovery>2020-04-14</discovery>
       <entry>2020-04-23</entry>
+      <modified>2020-05-16</modified>
     </dates>
   </vuln>
 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?202005160917.04G9HQUo050285>