Opened 4 months ago

Closed 4 months ago

#23394 closed enhancement (fixed)

File security advisory for MariaDB-11.8.8

Reported by: Douglas R. Reno Owned by: SecurityAdvisory
Priority: high Milestone: 13.1
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

In #23386, we updated the book to MariaDB-12.3.3.

This however requires additional action from a user when doing updates, and at the same time removes the Galera functionality.

The Galera functionality has three security fixes which were applied in 11.8.8:

  • CVE-2026-49261 (10.0 Critical)
  • CVE-2026-48165 (8.0 High)
  • CVE-2026-48163 (8.0 High)

For 12.4/13.0 users, let's suggest that they stay on the 11.8.x series (though I will document that users who want to upgrade to 12.3.x can with the caveat of needing to run 'mariadb-upgrade' and do significant modifications to databases which use the now-removed Galera functionality).

Change History (1)

comment:1 by Douglas R. Reno, 4 months ago

Resolution: → fixed
Status: assigned → closed

SA-13.0-110 issued

Note: See TracTickets for help on using tickets.