Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 7 Nov 2020 17:40:34 +0000 (UTC)
From:      Bernard Spil <brnrd@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r554412 - head/security/vuxml
Message-ID:  <202011071740.0A7HeYER016620@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: brnrd
Date: Sat Nov  7 17:40:33 2020
New Revision: 554412
URL: https://svnweb.freebsd.org/changeset/ports/554412

Log:
  security/vuxml: Document addl. MariaDB vulns

Modified:
  head/security/vuxml/vuln.xml

Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml	Sat Nov  7 17:37:14 2020	(r554411)
+++ head/security/vuxml/vuln.xml	Sat Nov  7 17:40:33 2020	(r554412)
@@ -421,6 +421,18 @@ Notes:
     <topic>MySQL -- Multiple vulnerabilities</topic>
     <affects>
       <package>
+	<name>mariadb103-server</name>
+	<range><lt>10.3.26</lt></range>
+      </package>
+      <package>
+	<name>mariadb104-server</name>
+	<range><lt>10.4.16</lt></range>
+      </package>
+      <package>
+	<name>mariadb105-server</name>
+	<range><lt>10.5.7</lt></range>
+      </package>
+      <package>
 	<name>mysql56-server</name>
 	<range><lt>5.6.50</lt></range>
       </package>
@@ -441,6 +453,8 @@ Notes:
 	    Oracle MySQL.</p>
 	  <p>The highest CVSS v3.1 Base Score of vulnerabilities affecting Oracle
 	    MySQL is 8.</p>
+	  <p>NOTE: MariaDB only contains CVE-2020-14812 CVE-2020-14765
+	    CVE-2020-14776 and CVE-2020-14789</p>
 	</blockquote>
       </body>
     </description>
@@ -498,6 +512,7 @@ Notes:
     <dates>
       <discovery>2020-10-20</discovery>
       <entry>2020-10-21</entry>
+      <modified>2020-11-07</modified>
     </dates>
   </vuln>
 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?202011071740.0A7HeYER016620>