Skip to content
This repository has been archived by the owner on Mar 16, 2022. It is now read-only.

1.285.0

Compare
Choose a tag to compare
@cf-buildpacks-eng cf-buildpacks-eng released this 04 Jun 18:52
· 1 commit to master since this release

Notably, this release addresses:

USN-3957-2 USN-3957-2: MariaDB vulnerabilities:

  • CVE-2019-2614: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:Server: Replication). Supported versions that are affected are 5.6.43 andprior, 5.7.25 and prior and 8.0.15 and prior. Difficult to exploitvulnerability allows high privileged attacker with network access viamultiple protocols to compromise MySQL Server. Successful attacks of thisvulnerability can result in unauthorized ability to cause a hang orfrequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 BaseScore 4.4 (Availability impacts). CVSS Vector:(CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
  • CVE-2019-2627: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent:Server: Security: Privileges). Supported versions that are affected are5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Easily exploitablevulnerability allows high privileged attacker with network access viamultiple protocols to compromise MySQL Server. Successful attacks of thisvulnerability can result in unauthorized ability to cause a hang orfrequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 BaseScore 4.9 (Availability impacts). CVSS Vector:(CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).