MySQL Server -- Multiple vulerabilities

Affected packages
mariadb101-server < 10.1.45
mariadb102-server < 10.2.32
mariadb103-server < 10.3.23
mariadb104-server < 10.4.13
mysql56-server < 5.6.48
mysql57-server < 5.7.30
mysql80-server < 8.0.20
percona55-server < 5.5.68
percona56-server < 5.6.48
percona57-server < 5.7.30


VuXML ID 21d59ea3-8559-11ea-a5e2-d4c9ef517024
Discovery 2020-04-14
Entry 2020-04-23
Modified 2020-05-16

Oracle reports:

This Critical Patch Update contains 45 new security patches for Oracle MySQL. 9 of these vulnerabilities may be remotely exploitable without authentication, i.e., may be exploited over a network without requiring user credentials.

MariaDB reports 4 of these vulnerabilities exist in their software


