Opened 4 months ago
Closed 4 months ago
#23318 closed enhancement (fixed)
mariadb-11.8.7
| Reported by: | Bruce Dubbs | Owned by: | SecurityAdvisory |
|---|---|---|---|
| Priority: | high | Milestone: | 13.1 |
| Component: | BOOK | Version: | git |
| Severity: | medium | Keywords: | |
| Cc: |
Description
New point version.
Change History (6)
comment:1 by , 4 months ago
| Priority: | normal → high |
|---|
comment:2 by , 4 months ago
| Owner: | changed from to |
|---|---|
| Status: | new → assigned |
comment:3 by , 4 months ago
The full release notes are at https://mariadb.com/docs/release-notes/community-server/11.8/11.8.7
comment:4 by , 4 months ago
| Owner: | changed from to |
|---|---|
| Status: | assigned → new |
Fixed at commit d1432387a3. Leaving open for security advisory.
comment:5 by , 4 months ago
CVE-2026-44170 is Windows specific and thus will not be documented in the advisory.
Note:
See TracTickets
for help on using tickets.

This contains fixes for CVE-2026-44173, CVE-2026-44172, CVE-2026-44171, CVE-2026-44170, CVE-2026-44169, and CVE-2026-44168
I suspect I'll need to check the Oracle CPU for April to see what the situation is here for these since NVD says they are reserved, but base scores:
CVE-2026-44173: 5.0
CVE-2026-44172: 5.0
CVE-2026-44171: 6.3
CVE-2026-44170: 5.0
CVE-2026-44169: 4.3
CVE-2026-44168: 8.0