October 2022 security update tracking bug

Bug #1992453 reported by Marc Deslauriers
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
mysql-5.7 (Ubuntu)
Invalid
Undecided
Unassigned
Bionic
Fix Released
Undecided
Marc Deslauriers
Focal
Invalid
Undecided
Unassigned
Jammy
Invalid
Undecided
Unassigned
Kinetic
Invalid
Undecided
Unassigned
mysql-8.0 (Ubuntu)
Fix Released
Undecided
Marc Deslauriers
Bionic
Invalid
Undecided
Unassigned
Focal
Fix Released
Undecided
Marc Deslauriers
Jammy
Fix Released
Undecided
Marc Deslauriers
Kinetic
Fix Released
Undecided
Marc Deslauriers

Bug Description

New versions 8.0.31 and 5.7.40 are out, but CVE list is not available yet.

Changed in mysql-8.0 (Ubuntu Bionic):
status: New → Invalid
Changed in mysql-5.7 (Ubuntu Focal):
status: New → Invalid
Changed in mysql-5.7 (Ubuntu Jammy):
status: New → Invalid
Changed in mysql-5.7 (Ubuntu Kinetic):
status: New → Invalid
Changed in mysql-5.7 (Ubuntu Bionic):
assignee: nobody → Marc Deslauriers (mdeslaur)
status: New → In Progress
Changed in mysql-8.0 (Ubuntu Focal):
assignee: nobody → Marc Deslauriers (mdeslaur)
status: New → In Progress
Changed in mysql-8.0 (Ubuntu Jammy):
assignee: nobody → Marc Deslauriers (mdeslaur)
status: New → In Progress
Changed in mysql-8.0 (Ubuntu Kinetic):
assignee: nobody → Marc Deslauriers (mdeslaur)
status: New → In Progress
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mysql-8.0 - 8.0.31-0ubuntu2

---------------
mysql-8.0 (8.0.31-0ubuntu2) kinetic; urgency=medium

  * debian/tests/upstream: disable main.derived_limit test that fails on
    s390x.

 -- Marc Deslauriers <email address hidden> Thu, 13 Oct 2022 07:33:05 -0400

Changed in mysql-8.0 (Ubuntu Kinetic):
status: In Progress → Fix Released
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mysql-5.7 - 5.7.40-0ubuntu0.18.04.1

---------------
mysql-5.7 (5.7.40-0ubuntu0.18.04.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Update to 5.7.40 to fix security issues (LP: #1992453)
    - CVE-2022-21589, CVE-2022-21592, CVE-2022-21608, CVE-2022-21617

 -- Marc Deslauriers <email address hidden> Wed, 19 Oct 2022 08:58:42 -0400

Changed in mysql-5.7 (Ubuntu Bionic):
status: In Progress → Fix Released
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mysql-8.0 - 8.0.31-0ubuntu0.22.04.1

---------------
mysql-8.0 (8.0.31-0ubuntu0.22.04.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Update to 8.0.31 to fix security issues (LP: #1992453)
    - debian/tests/upstream: disable main.derived_limit test that fails on
      s390x.
    - Remove d/p/fix_path_mysql_keyring_encryption_test.patch: Fixed
      upstream.
    - Remove d/p/lp1971565.patch: Fixed upstream.
    - debian/mysql-testsuite-8.0.install: added new files.
    - CVE-2022-21594, CVE-2022-21599, CVE-2022-21604, CVE-2022-21608,
      CVE-2022-21611, CVE-2022-21617, CVE-2022-21625, CVE-2022-21632,
      CVE-2022-21633, CVE-2022-21637, CVE-2022-21640, CVE-2022-39400,
      CVE-2022-39408, CVE-2022-39410

 -- Marc Deslauriers <email address hidden> Wed, 19 Oct 2022 07:35:39 -0400

Changed in mysql-8.0 (Ubuntu Jammy):
status: In Progress → Fix Released
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mysql-8.0 - 8.0.31-0ubuntu0.20.04.1

---------------
mysql-8.0 (8.0.31-0ubuntu0.20.04.1) focal-security; urgency=medium

  * SECURITY UPDATE: Update to 8.0.31 to fix security issues (LP: #1992453)
    - debian/tests/upstream: disable main.derived_limit test that fails on
      s390x.
    - Remove d/p/fix_path_mysql_keyring_encryption_test.patch: Fixed
      upstream.
    - Remove d/p/lp1971565.patch: Fixed upstream.
    - debian/mysql-testsuite-8.0.install: added new files.
    - CVE-2022-21594, CVE-2022-21599, CVE-2022-21604, CVE-2022-21608,
      CVE-2022-21611, CVE-2022-21617, CVE-2022-21625, CVE-2022-21632,
      CVE-2022-21633, CVE-2022-21637, CVE-2022-21640, CVE-2022-39400,
      CVE-2022-39408, CVE-2022-39410

 -- Marc Deslauriers <email address hidden> Wed, 19 Oct 2022 07:35:39 -0400

Changed in mysql-8.0 (Ubuntu Focal):
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.