|
|
Log in / Subscribe / Register

Ubuntu alert USN-8536-1 (mariadb)

From:  noreply+usn-bot--- via ubuntu-security-announce <ubuntu-security-announce@lists.ubuntu.com>
To:  ubuntu-security-announce@lists.ubuntu.com
Subject:  [USN-8536-1] MariaDB vulnerabilities
Date:  Tue, 14 Jul 2026 13:08:23 +0000
Message-ID:  <E1wjcs3-0001TQ-5f@lists.ubuntu.com>
Cc:  noreply+usn-bot@canonical.com

========================================================================== Ubuntu Security Notice USN-8536-1 July 14, 2026 mariadb vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS Summary: Several security issues were fixed in MariaDB. Software Description: - mariadb: MariaDB database Details: It was discovered that MariaDB did not properly validate parameters supplied by a joiner node during a State Snapshot Transfer using the mariabackup method. An attacker could possibly use this issue to execute arbitrary shell commands on the donor node. (CVE-2026-44168) It was discovered that MariaDB did not properly enforce the SHOW CREATE ROUTINE privilege when a user obtained access to a stored routine via a role. An authenticated user could possibly use this issue to obtain sensitive information. (CVE-2026-44169) It was discovered that MariaDB's mbstream utility did not properly validate paths when unpacking archives. An attacker could possibly use this issue to write files outside of the intended target directory. (CVE-2026-44171) It was discovered that MariaDB's mysql_real_escape_string() function incorrectly handled the big5 character set. An attacker could possibly use this issue to perform SQL injection attacks. (CVE-2026-44172) It was discovered that MariaDB did not properly check the FILE privilege when the FROM clause of a SELECT ... INTO OUTFILE or SELECT ... INTO DUMPFILE statement contained only subqueries. An authenticated user could possibly use this issue to write files to unintended locations. (CVE-2026-44173) It was discovered that MariaDB did not properly validate parameters supplied by a joiner node during a State Snapshot Transfer using the rsync method. An attacker could possibly use this issue to execute arbitrary shell commands on the donor node. (CVE-2026-48163) It was discovered that MariaDB allowed a high-privileged user to set certain Galera system variables to values containing shell commands, which were then executed by the server process. An authenticated user could possibly use this issue to execute arbitrary shell commands. (CVE-2026-48165) It was discovered that MariaDB executed shell commands embedded in the name of a joiner node when wsrep_notify_cmd was enabled. A remote attacker could possibly use this issue to execute arbitrary shell commands. (CVE-2026-49261) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS mariadb-server 1:11.8.6-5ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8536-1 CVE-2026-44168, CVE-2026-44169, CVE-2026-44171, CVE-2026-44172, CVE-2026-44173, CVE-2026-48163, CVE-2026-48165, CVE-2026-49261 Package Information: https://launchpad.net/ubuntu/+source/mariadb/1:11.8.6-5ub...


Attachment: signature.asc (type=application/pgp-signature)

-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEE+8neBLO2Hp/ppPlOcpJm3tlzhgEFAmpWM74ACgkQcpJm3tlz hgHifw//dK4rwdfEFpa3uUWMXZ2AcMgrAWYR/76mOa6cP53uIwa/KlxVMw3jCmbj PEqe6SCDbNLqvSMVBow1INbdEe6o9ysvyPZtNmhsLPN4c0uWm3nclv2uwKXDpaAu lZLrdFfratf0MSM7hJm2/e4zPmaoxI1whaQF0xPbdPz1WVkUuiXaCuqpMimv9n1l 8Pn8pxTuelNdsF/TLC6F7sIHRBqn9ZCL5dE1bHWc+S9FPPO2DcaQ9SSmq6z5qh1n xxwtZ1BrRikFFEGlHZ34hUqdMZZ6zixUSUxuAY27lNsdGqRNJSu02CVyaGtH4DhX mhmpIexifv979296jAJJfsKsbqUWt0yTqRz/Buhcpmuy8VYJA3fTXq/Pvi1Y3/3Y Fx+V8IawkDKXox9zlUrZJczTlKrn+m+gZMseUnHJyihh1LREmuMjSTLn1Yk8q11r 8POSK5bllZEg8IXhk/N/kGqI5h4scwaIZh//BCEfPcreUJembwPN4Ns5vhQtwh8s KO/kurrxNV0/xqbh/GqvjpmeN1Ziw5yrN+mn2ywxNgP3DQ99975TPUFeX+lLRlax eRBF3kF7Evg3jyxHqxC4IDgFDGonhBr/39ygPmKfShN7LIuYU8juxmmoVB6e/crA FtigNCPFcVudf+UtiSSgXPDTLDySWreN+uJvIrKEB5QGPpJT4SI= =caek -----END PGP SIGNATURE-----


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds