Re: MariaDB security vulnerabilities

2022-02-22 Thread Anton Gladky
Dear Otto, thanks for providing this valuable information. Providing new binaries in LTS release can potentially break some stuff. But if both 10.1 and 10.3 can co-exist, it could be an option. Another problem is that 10.3 provides a new ABI (libmariadb19 instead of libmariadb18), so basically t

Re: MariaDB security vulnerabilities

2022-02-22 Thread Otto Kekäläinen
Hi! On Mon, Feb 14, 2022 at 4:04 AM Markus Koschany wrote: > > Hello, > > Just a heads-up. New CVE have been reported for MariaDB 10.3. It is likely > that > 10.1 in Stretch is affected as well. Otto Kekäläinen (maintainer) is currently > investigating if it is feasible to backport a newer Maria

MariaDB security vulnerabilities

2022-02-14 Thread Markus Koschany
Hello, Just a heads-up. New CVE have been reported for MariaDB 10.3. It is likely that 10.1 in Stretch is affected as well. Otto Kekäläinen (maintainer) is currently investigating if it is feasible to backport a newer MariaDB version to Stretch because 10.1 is no longer supported upstream. Do we h