ALSA-2025:19584

Source
https://errata.almalinux.org/9/ALSA-2025-19584.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2025:19584.json
JSON Data
https://api.test.osv.dev/v1/vulns/ALSA-2025:19584
Related
Published
2025-11-04T00:00:00Z
Modified
2025-11-07T09:36:35Z
Summary
Moderate: galera and mariadb security update
Details

Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/codership/wsrep-API repository. For a description of Galera replication engine see https://www.galeracluster.com web.

Security Fix(es):

  • mysql: High Privilege Denial of Service Vulnerability in MySQL Server (CVE-2025-21490)
  • mariadb: MariaDB Server Crash Due to Empty Backtrace Log (CVE-2023-52969)
  • mariadb: MariaDB Server Crash via Itemdirectview_ref (CVE-2023-52970)
  • mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)
  • mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30693)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:9

galera

Package

Name
galera
Purl
pkg:rpm/almalinux/galera

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
26.4.22-1.el9_6

mariadb

Package

Name
mariadb
Purl
pkg:rpm/almalinux/mariadb

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-backup

Package

Name
mariadb-backup
Purl
pkg:rpm/almalinux/mariadb-backup

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-common

Package

Name
mariadb-common
Purl
pkg:rpm/almalinux/mariadb-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-devel

Package

Name
mariadb-devel
Purl
pkg:rpm/almalinux/mariadb-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-embedded

Package

Name
mariadb-embedded
Purl
pkg:rpm/almalinux/mariadb-embedded

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-embedded-devel

Package

Name
mariadb-embedded-devel
Purl
pkg:rpm/almalinux/mariadb-embedded-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-errmsg

Package

Name
mariadb-errmsg
Purl
pkg:rpm/almalinux/mariadb-errmsg

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-gssapi-server

Package

Name
mariadb-gssapi-server
Purl
pkg:rpm/almalinux/mariadb-gssapi-server

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-oqgraph-engine

Package

Name
mariadb-oqgraph-engine
Purl
pkg:rpm/almalinux/mariadb-oqgraph-engine

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-pam

Package

Name
mariadb-pam
Purl
pkg:rpm/almalinux/mariadb-pam

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-server

Package

Name
mariadb-server
Purl
pkg:rpm/almalinux/mariadb-server

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-server-galera

Package

Name
mariadb-server-galera
Purl
pkg:rpm/almalinux/mariadb-server-galera

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-server-utils

Package

Name
mariadb-server-utils
Purl
pkg:rpm/almalinux/mariadb-server-utils

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6

mariadb-test

Package

Name
mariadb-test
Purl
pkg:rpm/almalinux/mariadb-test

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:10.5.29-2.el9_6