suse-su-2019:0628-1
Vulnerability from csaf_suse
Published
2019-03-18 10:19
Modified
2019-03-18 10:19
Summary
Security update for galera-3, mariadb, mariadb-connector-c

Notes

Title of the patch
Security update for galera-3, mariadb, mariadb-connector-c
Description of the patch
This update for mariadb, galera-3, mariadb-connector fixes the following issues: Security vulnerabilities addressed for mariadb: - CVE-2016-9843 [bsc#1013882] - CVE-2018-3058 [bsc#1101676] - CVE-2018-3060 - CVE-2018-3063 [bsc#1101677] - CVE-2018-3064 [bsc#1103342] - CVE-2018-3066 [bsc#1101678] - CVE-2018-3143 [bsc#1112421] - CVE-2018-3156 [bsc#1112417] - CVE-2018-3162 [bsc#1112415] - CVE-2018-3173 [bsc#1112386] - CVE-2018-3174 [bsc#1112368] - CVE-2018-3185 [bsc#1112384] - CVE-2018-3200 [bsc#1112404] - CVE-2018-3251 [bsc#1112397] - CVE-2018-3277 [bsc#1112391] - CVE-2018-3282 [bsc#1112432] - CVE-2018-3284 [bsc#1112377] Other bug fixes and changes for mariadb: - update to 10.2.21 GA * MDEV-17589 - Stack-buffer-overflow with indexed varchar (utf8) field * MDEV-16987 - ALTER DATABASE possible in read-only mode (forbid ALTER DATABASE in read_only) * MDEV-17720 - slave_ddl_exec_mode=IDEMPOTENT does not handle DROP DATABASE * MDEV-6453 - Assertion `inited==NONE || (inited==RND && scan)' failed in handler::ha_rnd_init(bool) with InnoDB, joins, AND/OR conditions * MDEV-18105 - Mariabackup fails to copy encrypted InnoDB system tablespace if LSN>4G * MDEV-18041 - Database corruption after renaming a prefix-indexed column [bsc#1120041] * MDEV-17470 - Orphan temporary files after interrupted ALTER cause InnoDB: Operating system error number 17 and eventual fatal error 71 * MDEV-17833: ALTER TABLE is not enforcing prefix index size limit * MDEV-17989: InnoDB: Failing assertion: dict_tf2_is_valid(flags, flags2) * MDEV-17765: Locking bug fix for SPATIAL INDEX * MDEV-17923, MDEV-17904, MDEV-17938: Fixes for FULLTEXT INDEX * Fixes for regressions introduced in MariaDB Server 10.2.19 by the backup-safe TRUNCATE TABLE (MDEV-13564, innodb_safe_truncate=ON) and innodb_undo_log_truncate: * MDEV-17780, MDEV-17816, MDEV-17849, MDEV-17851, MDEV-17885 * Several improvements to MariaDB Server and backup for dealing with encrypted or page_compressed pages: * MDEV-12112: corruption in encrypted table may be overlooked * MDEV-17958: On little-endian systems, remove bug-compatible variant of innodb_checksum_algorithm=crc32 * MDEV-17957: Make innodb_checksum_algorithm stricter for strict_* values * MDEV-18025: Mariabackup fails to detect corrupted page_compressed=1 tables * release notes and changelog: - https://mariadb.com/kb/en/library/mariadb-10221-release-notes - https://mariadb.com/kb/en/library/mariadb-10221-changelog - https://mariadb.com/kb/en/library/mariadb-10220-release-notes - https://mariadb.com/kb/en/library/mariadb-10220-changelog - remove PerconaFT from the package as it has AGPL licence (bsc#1118754) - Add patch to link against libatomic where necessary and use C++11 atomics instead of gcc built-in atomics - update to 10.2.19 GA [bsc#1116686] * innodb_safe_truncate system variable for a backup-safe TRUNCATE TABLE implementation that is based on RENAME, CREATE, DROP (MDEV-14717, MDEV-14585, MDEV-13564). Default value for this variable is ON. If you absolutely must use XtraBackup instead of Mariabackup, you can set it to OFF and restart the server * MDEV-17289: Multi-pass recovery fails to apply some redo log records * MDEV-17073: INSERT…ON DUPLICATE KEY UPDATE became more deadlock-prone * MDEV-17491: micro optimize page_id_t * MDEV-13671: InnoDB should use case-insensitive column name comparisons like the rest of the server * Fixes for indexed virtual columns: MDEV-17215, MDEV-16980 * MDEV-17433: Allow InnoDB start up with empty ib_logfile0 from mariabackup --prepare * MDEV-12547: InnoDB FULLTEXT index has too strict innodb_ft_result_cache_limit max limit * MDEV-17541: KILL QUERY during lock wait in FOREIGN KEY check causes hang * MDEV-17531: Crash in RENAME TABLE with FOREIGN KEY and FULLTEXT INDEX * MDEV-17532: Performance_schema reports wrong directory for the temporary files of ALTER TABLE…ALGORITHM=INPLACE * MDEV-17545: Predicate lock for SPATIAL INDEX should lock non-matching record * MDEV-17546: SPATIAL INDEX should not be allowed for FOREIGN KEY * MDEV-17548: Incorrect access to off-page column for indexed virtual column * MDEV-12023: Assertion failure sym_node->table != NULL on startup * MDEV-17230: encryption_key_id from alter is ignored by encryption threads * release notes and changelog: - https://mariadb.com/kb/en/library/mariadb-10219-release-notes - https://mariadb.com/kb/en/library/mariadb-10219-changelog - do not pack libmariadb.pc (packed in mariadb-connector-c) - add 'Requires: libmariadb_plugins' to the mariadb-test subpackage in order to be able to test client plugins successfuly (bsc#1111859) - don't remove debug_key_management.so anymore (bsc#1111858) - update to 10.2.18 GA * MDEV-15511 - if available, stunnel can be used during Galera rsync SST * MDEV-16791 - mariabackup: Support DDL commands during backup * MDEV-13564 - Refuse MLOG_TRUNCATE in mariabackup * MDEV-16934 - add new system variable eq_range_index_dive_limit to speed up queries that new long nested IN lists. The default value, for backward compatibility, is 0 meaning 'unlimited'. * MDEV-13333 - errors on InnoDB lock conflict * Report all InnoDB redo log corruption * MDEV-17043 - Purge of indexed virtual columns may cause hang on table-rebuilding DDL * MDEV-16868 - corruption of InnoDB temporary tables * MDEV-16465 - Invalid (old?) table or database name or hang in ha_innobase::delete_table and log semaphore wait upon concurrent DDL with foreign keys * release notes and changelog: - https://mariadb.com/kb/en/library/mariadb-10218-release-notes - https://mariadb.com/kb/en/library/mariadb-10218-changelog - update to 10.2.17 GA * New variable innodb_log_optimize_ddl for avoiding delay due to page flushing and allowing concurrent backup * InnoDB updated to 5.7.23 * MDEV-14637 - Fix hang due to DDL with FOREIGN KEY or persistent statistics * MDEV-15953 - Alter InnoDB Partitioned Table Moves Files (which were originally not in the datadir) to the datadir * MDEV-16515 - InnoDB: Failing assertion: ++retries < 10000 in file dict0dict.cc line 2737 * MDEV-16809 - Allow full redo logging for ALTER TABLE * Temporary tables: MDEV-16713 - InnoDB hang with repeating log entry * indexed virtual columns: MDEV-15855 - Deadlock between purge thread and DDL statement * MDEV-16664 - Change the default to innodb_lock_schedule_algorithm=fcfs * Galera: MDEV-15822 - WSREP: BF lock wait long for trx * release notes and changelog: - https://mariadb.com/kb/en/library/mariadb-10217-release-notes - https://mariadb.com/kb/en/library/mariadb-10217-changelog - switch to libedit as control sequences were already fixed there so we don't have to avoid it (bsc#1098683) - update to 10.2.16 GA * MDEV-13122: mariabackup now supports MyRocks * MDEV-13779 - InnoDB fails to shut down purge workers, causing hang * MDEV-16267 - Wrong INFORMATION_SCHEMA.INNODB_BUFFER_PAGE.\ TABLE_NAME * MDEV-13834 - Upgrade failure from 10.1 innodb_encrypt_log * MDEV-16283 - ALTER TABLE...DISCARD TABLESPACE still takes long on a large buffer pool * MDEV-16376 - ASAN: heap-use-after-free in gcol.innodb_virtual_debug * MDEV-15824 - innodb_defragment=ON trumps innodb_optimize_fulltext_only=ON in OPTIMIZE TABLE * MDEV-16124 - fil_rename_tablespace() times out and crashes server during table-rebuilding ALTER TABLE * MDEV-16416 - Crash on IMPORT TABLESPACE of a ROW_FORMAT=COMPRESSED table * MDEV-16456 - InnoDB error 'returned OS error 71' complains about wrong path * MDEV-13103 - Deal with page_compressed page corruption * MDEV-16496 - Mariabackup: Implement --verbose option to instrument InnoDB log apply * MDEV-16087 - Inconsistent SELECT results when query cache is enabled * MDEV-15114 - ASAN heap-use-after-free in mem_heap_dup or dfield_data_is_binary_equal (fix for indexed virtual columns) * release notes and changelog: - https://mariadb.com/kb/en/library/mariadb-10216-release-notes - https://mariadb.com/kb/en/library/mariadb-10216-changelog - pack wsrep_sst_rsync_wan file to galera subpackage Bug fixes and changes for galera-3: - update to 25.3.24: * A support for new certification key type was added to allow more relaxed certification rules for foreign key references (galera#491). * New status variables were added to display the number of open transactions and referenced client connections inside Galera provider (galera#492). * GCache was sometimes cleared unnecessarily on startup if the recovered state had smaller sequence number than the highest found from GCache. Now only entries with sequence number higher than recovery point will be cleared (galera#498). * Non-primary configuration is saved into grastate.dat only when if the node is in closing state (galera#499). * Exception from GComm was not always handled properly resulting in Galera to remain in half closed state. This was fixed by propagating the error condition appropriately to upper layers (galera#500). * A new status variable displaying the total weight of the cluster nodes was added (galera#501). * The value of pc.weight did not reflect the actual effective value after setting it via wsrep_provider_options. This was fixed by making sure that the new value is taken into use before returning the control back to caller (galera#505, MDEV-11959) * Use of ECHD algorithms with old OpenSSL versions was enabled (galera#511). * Default port value is now used by garbd if the port is not explicitly given in cluster address (MDEV-15531). * Correct error handling for posix_fallocate(). * Failed causal reads are retried during configuration changes. Bug fixes and changes for mariadb-connector-c: - New upstream version 3.0.6 * MDEV-15263: FIx IS_NUM() macro * CONC-297: local infile parameter must be unsigned int instead of my_bool * CONC-329: change return value of internal socket functions from my_bool to int * CONC-332: my_auth doesn't read/update server ok packet * CONC-344: reset internal row counter * CONC-345: invalid heap use after free * CONC-346: Remove old cmake policies * fixed crash in mysql_select_db if NULL parameter was provided - New upstream version 3.0.5 * CONC-336: Allow multiple initialization of client library * Fixed string to MYSQL_TIME conversion (prepared statements) * CONC-334: Copy all members of MYSQL_FIELD to internal statement structure * Fixed double free in dynamic column library * Added checks for corrupted packets in protocol * MDEV-15450: Added default connection attribute _server_host * CONC-326: fixed wrong openssl thread id callback - New upstream version 3.0.4 * Added option MYSQL_OPT_CAN_HANDLE_EXPIRED_PASSWORDS for mysql_options()/mysql_optionsv(): * New plugin configuration interface: The default configuration for a specific plugin can be specified via cmake parameter -DCLIENT_PLUGIN_${PLUGIN}=[DYNAMIC|STATIC|OFF]. * Added support for linux abstract socket (MDEV-15655). * CONC-320: Added asynchronous/non-blocking support for OpenSSL and GnuTLS * CONC-294: Access violation in mysql_close when using a connection plugin. * MDEV-14977: If built dynamically the old_password plugin could not be located due to wrong filename (must be mysql_old_password.so instead of old_password.so). * CONC-315: If no default client character set was specified, the utf8 character set will be used by default (instead of setting the client character set to server character set) * CONC-317: Parsing of configuration file fails if key/value pairs contain white spaces. * CONC-322: Correct handling of EAGAIN and EINPROGRESS in internal_connect (socket) for non windows platforms. * CONC-323: mariadb_stmt_execute_direct hangs forever if compression used. * CONC-324: Wrong codepage numbers for some collations. * CONC-326: ssl_thread_init() uses wrong openssl threadid callback - Drop libmysqlclient_r Provides from the -devel package. (bsc#1097938)
Patchnames
HPE-Helion-OpenStack-8-2019-628,SUSE-2019-628,SUSE-OpenStack-Cloud-8-2019-628,SUSE-OpenStack-Cloud-Crowbar-8-2019-628
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).



{
  "document": {
    "aggregate_severity": {
      "namespace": "https://www.suse.com/support/security/rating/",
      "text": "important"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright 2024 SUSE LLC. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "summary",
        "text": "Security update for galera-3, mariadb, mariadb-connector-c",
        "title": "Title of the patch"
      },
      {
        "category": "description",
        "text": "This update for mariadb, galera-3, mariadb-connector fixes the following issues:\n\nSecurity vulnerabilities addressed for mariadb:\n\n- CVE-2016-9843 [bsc#1013882]\n- CVE-2018-3058 [bsc#1101676]\n- CVE-2018-3060\n- CVE-2018-3063 [bsc#1101677]\n- CVE-2018-3064 [bsc#1103342]\n- CVE-2018-3066 [bsc#1101678]\n- CVE-2018-3143 [bsc#1112421]\n- CVE-2018-3156 [bsc#1112417]\n- CVE-2018-3162 [bsc#1112415]\n- CVE-2018-3173 [bsc#1112386]\n- CVE-2018-3174 [bsc#1112368]\n- CVE-2018-3185 [bsc#1112384]\n- CVE-2018-3200 [bsc#1112404]\n- CVE-2018-3251 [bsc#1112397]\n- CVE-2018-3277 [bsc#1112391]\n- CVE-2018-3282 [bsc#1112432]\n- CVE-2018-3284 [bsc#1112377]\n\nOther bug fixes and changes for mariadb:\n\n- update to 10.2.21 GA\n    * MDEV-17589 - Stack-buffer-overflow with indexed varchar\n      (utf8) field\n    * MDEV-16987 - ALTER DATABASE possible in read-only mode\n      (forbid ALTER DATABASE in read_only)\n    * MDEV-17720 - slave_ddl_exec_mode=IDEMPOTENT does not handle\n      DROP DATABASE\n    * MDEV-6453 - Assertion `inited==NONE || (inited==RND \u0026\u0026 scan)\u0027\n      failed in handler::ha_rnd_init(bool) with InnoDB, joins,\n      AND/OR conditions\n    * MDEV-18105 - Mariabackup fails to copy encrypted InnoDB\n      system tablespace if LSN\u003e4G\n    * MDEV-18041 - Database corruption after renaming a\n      prefix-indexed column [bsc#1120041]\n    * MDEV-17470 - Orphan temporary files after interrupted ALTER\n      cause InnoDB: Operating system error number 17 and eventual\n      fatal error 71\n    * MDEV-17833: ALTER TABLE is not enforcing prefix index size\n      limit\n    * MDEV-17989: InnoDB: Failing assertion:\n      dict_tf2_is_valid(flags, flags2)\n    * MDEV-17765: Locking bug fix for SPATIAL INDEX\n    * MDEV-17923, MDEV-17904, MDEV-17938: Fixes for FULLTEXT INDEX\n    * Fixes for regressions introduced in MariaDB Server 10.2.19 by\n      the backup-safe TRUNCATE TABLE (MDEV-13564,\n      innodb_safe_truncate=ON) and innodb_undo_log_truncate:\n      * MDEV-17780, MDEV-17816, MDEV-17849, MDEV-17851, MDEV-17885\n    * Several improvements to MariaDB Server and backup for dealing\n      with encrypted or page_compressed pages:\n      * MDEV-12112: corruption in encrypted table may be overlooked\n      * MDEV-17958: On little-endian systems, remove bug-compatible\n        variant of innodb_checksum_algorithm=crc32\n      * MDEV-17957: Make innodb_checksum_algorithm stricter for\n        strict_* values\n      * MDEV-18025: Mariabackup fails to detect corrupted\n        page_compressed=1 tables\n    * release notes and changelog:\n      - https://mariadb.com/kb/en/library/mariadb-10221-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10221-changelog\n      - https://mariadb.com/kb/en/library/mariadb-10220-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10220-changelog\n- remove PerconaFT from the package as it has AGPL licence (bsc#1118754)\n- Add patch to link against libatomic where necessary and\n  use C++11 atomics instead of gcc built-in atomics\n- update to 10.2.19 GA [bsc#1116686]\n    * innodb_safe_truncate system variable for a backup-safe\n      TRUNCATE TABLE implementation that is based on RENAME,\n      CREATE, DROP (MDEV-14717, MDEV-14585, MDEV-13564). Default\n      value for this variable is ON. If you absolutely must use\n      XtraBackup instead of Mariabackup, you can set it to OFF and\n      restart the server\n    * MDEV-17289: Multi-pass recovery fails to apply some redo\n      log records\n    * MDEV-17073: INSERT\u2026ON DUPLICATE KEY UPDATE became more\n      deadlock-prone\n    * MDEV-17491: micro optimize page_id_t\n    * MDEV-13671: InnoDB should use case-insensitive column name\n      comparisons like the rest of the server\n    * Fixes for indexed virtual columns: MDEV-17215, MDEV-16980\n    * MDEV-17433: Allow InnoDB start up with empty ib_logfile0\n      from mariabackup --prepare\n    * MDEV-12547: InnoDB FULLTEXT index has too strict\n      innodb_ft_result_cache_limit max limit\n    * MDEV-17541: KILL QUERY during lock wait in FOREIGN KEY\n      check causes hang\n    * MDEV-17531: Crash in RENAME TABLE with FOREIGN KEY and\n      FULLTEXT INDEX\n    * MDEV-17532: Performance_schema reports wrong directory for\n      the temporary files of ALTER TABLE\u2026ALGORITHM=INPLACE\n    * MDEV-17545: Predicate lock for SPATIAL INDEX should lock\n      non-matching record\n    * MDEV-17546: SPATIAL INDEX should not be allowed for\n      FOREIGN KEY\n    * MDEV-17548: Incorrect access to off-page column for\n      indexed virtual column\n    * MDEV-12023: Assertion failure sym_node-\u003etable != NULL\n      on startup\n    * MDEV-17230: encryption_key_id from alter is ignored by\n      encryption threads\n    * release notes and changelog:\n      - https://mariadb.com/kb/en/library/mariadb-10219-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10219-changelog\n- do not pack libmariadb.pc (packed in mariadb-connector-c)\n- add \u0027Requires: libmariadb_plugins\u0027 to the mariadb-test subpackage\n  in order to be able to test client plugins successfuly\n  (bsc#1111859)\n- don\u0027t remove debug_key_management.so anymore (bsc#1111858)\n- update to 10.2.18 GA\n    * MDEV-15511 - if available, stunnel can be used during Galera\n      rsync SST\n    * MDEV-16791 - mariabackup: Support DDL commands during backup\n    * MDEV-13564 - Refuse MLOG_TRUNCATE in mariabackup\n    * MDEV-16934 - add new system variable eq_range_index_dive_limit\n      to speed up queries that new long nested IN lists. The default\n      value, for backward compatibility, is 0 meaning \u0027unlimited\u0027.\n    * MDEV-13333 - errors on InnoDB lock conflict\n    * Report all InnoDB redo log corruption\n    * MDEV-17043 - Purge of indexed virtual columns may cause hang\n      on table-rebuilding DDL\n    * MDEV-16868 - corruption of InnoDB temporary tables\n    * MDEV-16465 - Invalid (old?) table or database name or hang\n      in ha_innobase::delete_table and log semaphore wait upon\n      concurrent DDL with foreign keys\n    * release notes and changelog:\n      - https://mariadb.com/kb/en/library/mariadb-10218-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10218-changelog\n- update to 10.2.17 GA\n    * New variable innodb_log_optimize_ddl for avoiding delay due\n      to page flushing and allowing concurrent backup\n    * InnoDB updated to 5.7.23\n    * MDEV-14637 - Fix hang due to DDL with FOREIGN KEY or\n      persistent statistics\n    * MDEV-15953 - Alter InnoDB Partitioned Table Moves Files\n      (which were originally not in the datadir) to the datadir\n    * MDEV-16515 - InnoDB: Failing assertion: ++retries \u003c 10000 in\n      file dict0dict.cc line 2737\n    * MDEV-16809 - Allow full redo logging for ALTER TABLE\n    * Temporary tables: MDEV-16713 - InnoDB hang with repeating\n      log entry\n    * indexed virtual columns: MDEV-15855 - Deadlock between purge\n      thread and DDL statement\n    * MDEV-16664 - Change the default to\n      innodb_lock_schedule_algorithm=fcfs\n    * Galera: MDEV-15822 - WSREP: BF lock wait long for trx\n    * release notes and changelog:\n      - https://mariadb.com/kb/en/library/mariadb-10217-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10217-changelog\n- switch to libedit as control sequences were already fixed there\n  so we don\u0027t have to avoid it (bsc#1098683)\n- update to 10.2.16 GA\n    * MDEV-13122: mariabackup now supports MyRocks\n    * MDEV-13779 - InnoDB fails to shut down purge workers, causing\n      hang\n    * MDEV-16267 - Wrong INFORMATION_SCHEMA.INNODB_BUFFER_PAGE.\\\n      TABLE_NAME\n    * MDEV-13834 - Upgrade failure from 10.1 innodb_encrypt_log\n    * MDEV-16283 - ALTER TABLE...DISCARD TABLESPACE still takes long\n      on a large buffer pool\n    * MDEV-16376 - ASAN: heap-use-after-free in\n      gcol.innodb_virtual_debug\n    * MDEV-15824 - innodb_defragment=ON trumps\n      innodb_optimize_fulltext_only=ON in OPTIMIZE TABLE\n    * MDEV-16124 - fil_rename_tablespace() times out and crashes\n      server during table-rebuilding ALTER TABLE\n    * MDEV-16416 - Crash on IMPORT TABLESPACE of a\n      ROW_FORMAT=COMPRESSED table\n    * MDEV-16456 - InnoDB error \u0027returned OS error 71\u0027 complains\n      about wrong path\n    * MDEV-13103 - Deal with page_compressed page corruption\n    * MDEV-16496 - Mariabackup: Implement --verbose option to\n      instrument InnoDB log apply\n    * MDEV-16087 - Inconsistent SELECT results when query cache\n      is enabled\n    * MDEV-15114 - ASAN heap-use-after-free in mem_heap_dup or\n      dfield_data_is_binary_equal (fix for indexed virtual columns)\n    * release notes and changelog:\n      - https://mariadb.com/kb/en/library/mariadb-10216-release-notes\n      - https://mariadb.com/kb/en/library/mariadb-10216-changelog\n- pack wsrep_sst_rsync_wan file to galera subpackage\n\nBug fixes and changes for galera-3:\n\n- update to 25.3.24:\n  * A support for new certification key type was added to allow\n    more relaxed certification rules for foreign key references (galera#491).\n  * New status variables were added to display the number of open transactions\n    and referenced client connections inside Galera provider (galera#492).\n  * GCache was sometimes cleared unnecessarily on startup if the recovered\n    state had smaller sequence number than the highest found from GCache.\n    Now only entries with sequence number higher than recovery point will be\n    cleared (galera#498).\n  * Non-primary configuration is saved into grastate.dat only when if the\n    node is in closing state (galera#499).\n  * Exception from GComm was not always handled properly resulting in\n    Galera to remain in half closed state. This was fixed by propagating the\n    error condition appropriately to upper layers (galera#500).\n  * A new status variable displaying the total weight of the cluster nodes\n    was added (galera#501).\n  * The value of pc.weight did not reflect the actual effective value after\n    setting it via wsrep_provider_options. This was fixed by making sure that\n    the new value is taken into use before returning the control back to\n    caller (galera#505, MDEV-11959)\n  * Use of ECHD algorithms with old OpenSSL versions was enabled (galera#511).\n  * Default port value is now used by garbd if the port is not explicitly\n    given in cluster address (MDEV-15531).\n  * Correct error handling for posix_fallocate().\n  * Failed causal reads are retried during configuration changes.\n\nBug fixes and changes for mariadb-connector-c:\n\n- New upstream version 3.0.6\n  * MDEV-15263: FIx IS_NUM() macro\n  * CONC-297: local infile parameter must be unsigned int instead\n    of my_bool\n  * CONC-329: change return value of internal socket functions\n    from my_bool to int\n  * CONC-332: my_auth doesn\u0027t read/update server ok packet\n  * CONC-344: reset internal row counter\n  * CONC-345: invalid heap use after free\n  * CONC-346: Remove old cmake policies\n  * fixed crash in mysql_select_db if NULL parameter was provided\n- New upstream version 3.0.5\n  * CONC-336: Allow multiple initialization of client library\n  * Fixed string to MYSQL_TIME conversion (prepared statements)\n  * CONC-334: Copy all members of MYSQL_FIELD to internal\n    statement structure\n  * Fixed double free in dynamic column library\n  * Added checks for corrupted packets in protocol\n  * MDEV-15450: Added default connection attribute _server_host\n  * CONC-326: fixed wrong openssl thread id callback\n- New upstream version 3.0.4\n  * Added option MYSQL_OPT_CAN_HANDLE_EXPIRED_PASSWORDS for\n    mysql_options()/mysql_optionsv():\n  * New plugin configuration interface: The default configuration\n    for a specific plugin can be specified via cmake parameter\n    -DCLIENT_PLUGIN_${PLUGIN}=[DYNAMIC|STATIC|OFF].\n  * Added support for linux abstract socket (MDEV-15655).\n  * CONC-320: Added asynchronous/non-blocking support for\n    OpenSSL and GnuTLS\n  * CONC-294: Access violation in mysql_close when using\n    a connection plugin.\n  * MDEV-14977: If built dynamically the old_password plugin\n    could not be located due to wrong filename (must be\n    mysql_old_password.so instead of old_password.so).\n  * CONC-315: If no default client character set was specified,\n    the utf8 character set will be used by default (instead of\n    setting the client character set to server character set)\n  * CONC-317: Parsing of configuration file fails if key/value\n    pairs contain white spaces.\n  * CONC-322: Correct handling of EAGAIN and EINPROGRESS in\n    internal_connect (socket) for non windows platforms.\n  * CONC-323: mariadb_stmt_execute_direct hangs forever if\n    compression used.\n  * CONC-324: Wrong codepage numbers for some collations.\n  * CONC-326: ssl_thread_init() uses wrong openssl threadid\n    callback\n- Drop libmysqlclient_r Provides from the -devel package.\n  (bsc#1097938)\n  ",
        "title": "Description of the patch"
      },
      {
        "category": "details",
        "text": "HPE-Helion-OpenStack-8-2019-628,SUSE-2019-628,SUSE-OpenStack-Cloud-8-2019-628,SUSE-OpenStack-Cloud-Crowbar-8-2019-628",
        "title": "Patchnames"
      },
      {
        "category": "legal_disclaimer",
        "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).",
        "title": "Terms of use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://www.suse.com/support/security/contact/",
      "name": "SUSE Product Security Team",
      "namespace": "https://www.suse.com/"
    },
    "references": [
      {
        "category": "external",
        "summary": "SUSE ratings",
        "url": "https://www.suse.com/support/security/rating/"
      },
      {
        "category": "self",
        "summary": "URL of this CSAF notice",
        "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2019_0628-1.json"
      },
      {
        "category": "self",
        "summary": "URL for SUSE-SU-2019:0628-1",
        "url": "https://www.suse.com/support/update/announcement/2019/suse-su-20190628-1/"
      },
      {
        "category": "self",
        "summary": "E-Mail link for SUSE-SU-2019:0628-1",
        "url": "https://www.suse.com/support/update/announcement/2019/suse-su-20190628-1.html"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1013882",
        "url": "https://bugzilla.suse.com/1013882"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1097938",
        "url": "https://bugzilla.suse.com/1097938"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1098683",
        "url": "https://bugzilla.suse.com/1098683"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1101676",
        "url": "https://bugzilla.suse.com/1101676"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1101677",
        "url": "https://bugzilla.suse.com/1101677"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1101678",
        "url": "https://bugzilla.suse.com/1101678"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1103342",
        "url": "https://bugzilla.suse.com/1103342"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1111858",
        "url": "https://bugzilla.suse.com/1111858"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1111859",
        "url": "https://bugzilla.suse.com/1111859"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112368",
        "url": "https://bugzilla.suse.com/1112368"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112377",
        "url": "https://bugzilla.suse.com/1112377"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112384",
        "url": "https://bugzilla.suse.com/1112384"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112386",
        "url": "https://bugzilla.suse.com/1112386"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112391",
        "url": "https://bugzilla.suse.com/1112391"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112397",
        "url": "https://bugzilla.suse.com/1112397"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112404",
        "url": "https://bugzilla.suse.com/1112404"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112415",
        "url": "https://bugzilla.suse.com/1112415"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112417",
        "url": "https://bugzilla.suse.com/1112417"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112421",
        "url": "https://bugzilla.suse.com/1112421"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1112432",
        "url": "https://bugzilla.suse.com/1112432"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1116686",
        "url": "https://bugzilla.suse.com/1116686"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1118754",
        "url": "https://bugzilla.suse.com/1118754"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 1120041",
        "url": "https://bugzilla.suse.com/1120041"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2016-9843 page",
        "url": "https://www.suse.com/security/cve/CVE-2016-9843/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3058 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3058/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3060 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3060/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3063 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3063/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3064 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3064/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3066 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3066/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3143 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3143/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3156 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3156/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3162 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3162/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3173 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3173/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3174 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3174/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3185 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3185/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3200 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3200/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3251 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3251/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3277 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3277/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3282 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3282/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2018-3284 page",
        "url": "https://www.suse.com/security/cve/CVE-2018-3284/"
      }
    ],
    "title": "Security update for galera-3, mariadb, mariadb-connector-c",
    "tracking": {
      "current_release_date": "2019-03-18T10:19:44Z",
      "generator": {
        "date": "2019-03-18T10:19:44Z",
        "engine": {
          "name": "cve-database.git:bin/generate-csaf.pl",
          "version": "1"
        }
      },
      "id": "SUSE-SU-2019:0628-1",
      "initial_release_date": "2019-03-18T10:19:44Z",
      "revision_history": [
        {
          "date": "2019-03-18T10:19:44Z",
          "number": "1",
          "summary": "Current version"
        }
      ],
      "status": "final",
      "version": "1"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "galera-3-25.3.24-4.3.1.aarch64",
                "product": {
                  "name": "galera-3-25.3.24-4.3.1.aarch64",
                  "product_id": "galera-3-25.3.24-4.3.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "galera-3-wsrep-provider-25.3.24-4.3.1.aarch64",
                "product": {
                  "name": "galera-3-wsrep-provider-25.3.24-4.3.1.aarch64",
                  "product_id": "galera-3-wsrep-provider-25.3.24-4.3.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb-devel-3.0.6-3.6.1.aarch64",
                "product": {
                  "name": "libmariadb-devel-3.0.6-3.6.1.aarch64",
                  "product_id": "libmariadb-devel-3.0.6-3.6.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb3-3.0.6-3.6.1.aarch64",
                "product": {
                  "name": "libmariadb3-3.0.6-3.6.1.aarch64",
                  "product_id": "libmariadb3-3.0.6-3.6.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb_plugins-3.0.6-3.6.1.aarch64",
                "product": {
                  "name": "libmariadb_plugins-3.0.6-3.6.1.aarch64",
                  "product_id": "libmariadb_plugins-3.0.6-3.6.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadbprivate-3.0.6-3.6.1.aarch64",
                "product": {
                  "name": "libmariadbprivate-3.0.6-3.6.1.aarch64",
                  "product_id": "libmariadbprivate-3.0.6-3.6.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld-devel-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "libmysqld-devel-10.2.21-4.8.1.aarch64",
                  "product_id": "libmysqld-devel-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld19-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "libmysqld19-10.2.21-4.8.1.aarch64",
                  "product_id": "libmysqld19-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-bench-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-bench-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-bench-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-client-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-client-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-client-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-galera-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-galera-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-galera-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-test-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-test-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-test-10.2.21-4.8.1.aarch64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-tools-10.2.21-4.8.1.aarch64",
                "product": {
                  "name": "mariadb-tools-10.2.21-4.8.1.aarch64",
                  "product_id": "mariadb-tools-10.2.21-4.8.1.aarch64"
                }
              }
            ],
            "category": "architecture",
            "name": "aarch64"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "libmariadb3-64bit-3.0.6-3.6.1.aarch64_ilp32",
                "product": {
                  "name": "libmariadb3-64bit-3.0.6-3.6.1.aarch64_ilp32",
                  "product_id": "libmariadb3-64bit-3.0.6-3.6.1.aarch64_ilp32"
                }
              }
            ],
            "category": "architecture",
            "name": "aarch64_ilp32"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "mariadb-errormessages-10.2.21-4.8.1.noarch",
                "product": {
                  "name": "mariadb-errormessages-10.2.21-4.8.1.noarch",
                  "product_id": "mariadb-errormessages-10.2.21-4.8.1.noarch"
                }
              }
            ],
            "category": "architecture",
            "name": "noarch"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "galera-3-25.3.24-4.3.1.ppc64le",
                "product": {
                  "name": "galera-3-25.3.24-4.3.1.ppc64le",
                  "product_id": "galera-3-25.3.24-4.3.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "galera-3-wsrep-provider-25.3.24-4.3.1.ppc64le",
                "product": {
                  "name": "galera-3-wsrep-provider-25.3.24-4.3.1.ppc64le",
                  "product_id": "galera-3-wsrep-provider-25.3.24-4.3.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb-devel-3.0.6-3.6.1.ppc64le",
                "product": {
                  "name": "libmariadb-devel-3.0.6-3.6.1.ppc64le",
                  "product_id": "libmariadb-devel-3.0.6-3.6.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb3-3.0.6-3.6.1.ppc64le",
                "product": {
                  "name": "libmariadb3-3.0.6-3.6.1.ppc64le",
                  "product_id": "libmariadb3-3.0.6-3.6.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb_plugins-3.0.6-3.6.1.ppc64le",
                "product": {
                  "name": "libmariadb_plugins-3.0.6-3.6.1.ppc64le",
                  "product_id": "libmariadb_plugins-3.0.6-3.6.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadbprivate-3.0.6-3.6.1.ppc64le",
                "product": {
                  "name": "libmariadbprivate-3.0.6-3.6.1.ppc64le",
                  "product_id": "libmariadbprivate-3.0.6-3.6.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld-devel-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "libmysqld-devel-10.2.21-4.8.1.ppc64le",
                  "product_id": "libmysqld-devel-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld19-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "libmysqld19-10.2.21-4.8.1.ppc64le",
                  "product_id": "libmysqld19-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-bench-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-bench-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-bench-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-client-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-client-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-client-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-galera-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-galera-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-galera-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-test-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-test-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-test-10.2.21-4.8.1.ppc64le"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-tools-10.2.21-4.8.1.ppc64le",
                "product": {
                  "name": "mariadb-tools-10.2.21-4.8.1.ppc64le",
                  "product_id": "mariadb-tools-10.2.21-4.8.1.ppc64le"
                }
              }
            ],
            "category": "architecture",
            "name": "ppc64le"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "galera-3-25.3.24-4.3.1.s390x",
                "product": {
                  "name": "galera-3-25.3.24-4.3.1.s390x",
                  "product_id": "galera-3-25.3.24-4.3.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "galera-3-wsrep-provider-25.3.24-4.3.1.s390x",
                "product": {
                  "name": "galera-3-wsrep-provider-25.3.24-4.3.1.s390x",
                  "product_id": "galera-3-wsrep-provider-25.3.24-4.3.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb-devel-3.0.6-3.6.1.s390x",
                "product": {
                  "name": "libmariadb-devel-3.0.6-3.6.1.s390x",
                  "product_id": "libmariadb-devel-3.0.6-3.6.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb3-3.0.6-3.6.1.s390x",
                "product": {
                  "name": "libmariadb3-3.0.6-3.6.1.s390x",
                  "product_id": "libmariadb3-3.0.6-3.6.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb_plugins-3.0.6-3.6.1.s390x",
                "product": {
                  "name": "libmariadb_plugins-3.0.6-3.6.1.s390x",
                  "product_id": "libmariadb_plugins-3.0.6-3.6.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadbprivate-3.0.6-3.6.1.s390x",
                "product": {
                  "name": "libmariadbprivate-3.0.6-3.6.1.s390x",
                  "product_id": "libmariadbprivate-3.0.6-3.6.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld-devel-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "libmysqld-devel-10.2.21-4.8.1.s390x",
                  "product_id": "libmysqld-devel-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld19-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "libmysqld19-10.2.21-4.8.1.s390x",
                  "product_id": "libmysqld19-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-bench-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-bench-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-bench-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-client-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-client-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-client-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-galera-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-galera-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-galera-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-test-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-test-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-test-10.2.21-4.8.1.s390x"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-tools-10.2.21-4.8.1.s390x",
                "product": {
                  "name": "mariadb-tools-10.2.21-4.8.1.s390x",
                  "product_id": "mariadb-tools-10.2.21-4.8.1.s390x"
                }
              }
            ],
            "category": "architecture",
            "name": "s390x"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
                "product": {
                  "name": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
                  "product_id": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb3-3.0.6-3.6.1.x86_64",
                "product": {
                  "name": "libmariadb3-3.0.6-3.6.1.x86_64",
                  "product_id": "libmariadb3-3.0.6-3.6.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-client-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-client-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-client-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-galera-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-galera-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-galera-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-tools-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-tools-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-tools-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "galera-3-25.3.24-4.3.1.x86_64",
                "product": {
                  "name": "galera-3-25.3.24-4.3.1.x86_64",
                  "product_id": "galera-3-25.3.24-4.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb-devel-3.0.6-3.6.1.x86_64",
                "product": {
                  "name": "libmariadb-devel-3.0.6-3.6.1.x86_64",
                  "product_id": "libmariadb-devel-3.0.6-3.6.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadb_plugins-3.0.6-3.6.1.x86_64",
                "product": {
                  "name": "libmariadb_plugins-3.0.6-3.6.1.x86_64",
                  "product_id": "libmariadb_plugins-3.0.6-3.6.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmariadbprivate-3.0.6-3.6.1.x86_64",
                "product": {
                  "name": "libmariadbprivate-3.0.6-3.6.1.x86_64",
                  "product_id": "libmariadbprivate-3.0.6-3.6.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld-devel-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "libmysqld-devel-10.2.21-4.8.1.x86_64",
                  "product_id": "libmysqld-devel-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "libmysqld19-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "libmysqld19-10.2.21-4.8.1.x86_64",
                  "product_id": "libmysqld19-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-bench-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-bench-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-bench-10.2.21-4.8.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "mariadb-test-10.2.21-4.8.1.x86_64",
                "product": {
                  "name": "mariadb-test-10.2.21-4.8.1.x86_64",
                  "product_id": "mariadb-test-10.2.21-4.8.1.x86_64"
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "HPE Helion OpenStack 8",
                "product": {
                  "name": "HPE Helion OpenStack 8",
                  "product_id": "HPE Helion OpenStack 8",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:suse:hpe-helion-openstack:8"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "SUSE OpenStack Cloud 8",
                "product": {
                  "name": "SUSE OpenStack Cloud 8",
                  "product_id": "SUSE OpenStack Cloud 8",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:suse:suse-openstack-cloud:8"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "SUSE OpenStack Cloud Crowbar 8",
                "product": {
                  "name": "SUSE OpenStack Cloud Crowbar 8",
                  "product_id": "SUSE OpenStack Cloud Crowbar 8",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:suse:suse-openstack-cloud-crowbar:8"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "SUSE Linux Enterprise"
          }
        ],
        "category": "vendor",
        "name": "SUSE"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64"
        },
        "product_reference": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "libmariadb3-3.0.6-3.6.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64"
        },
        "product_reference": "libmariadb3-3.0.6-3.6.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-10.2.21-4.8.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-client-10.2.21-4.8.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-client-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-errormessages-10.2.21-4.8.1.noarch as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch"
        },
        "product_reference": "mariadb-errormessages-10.2.21-4.8.1.noarch",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-galera-10.2.21-4.8.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-galera-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-tools-10.2.21-4.8.1.x86_64 as component of HPE Helion OpenStack 8",
          "product_id": "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-tools-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "HPE Helion OpenStack 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64"
        },
        "product_reference": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "libmariadb3-3.0.6-3.6.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64"
        },
        "product_reference": "libmariadb3-3.0.6-3.6.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-client-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-client-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-errormessages-10.2.21-4.8.1.noarch as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch"
        },
        "product_reference": "mariadb-errormessages-10.2.21-4.8.1.noarch",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-galera-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-galera-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-tools-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud 8",
          "product_id": "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-tools-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64"
        },
        "product_reference": "galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "libmariadb3-3.0.6-3.6.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64"
        },
        "product_reference": "libmariadb3-3.0.6-3.6.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-client-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-client-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-errormessages-10.2.21-4.8.1.noarch as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch"
        },
        "product_reference": "mariadb-errormessages-10.2.21-4.8.1.noarch",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-galera-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-galera-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "mariadb-tools-10.2.21-4.8.1.x86_64 as component of SUSE OpenStack Cloud Crowbar 8",
          "product_id": "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        },
        "product_reference": "mariadb-tools-10.2.21-4.8.1.x86_64",
        "relates_to_product_reference": "SUSE OpenStack Cloud Crowbar 8"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2016-9843",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2016-9843"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2016-9843",
          "url": "https://www.suse.com/security/cve/CVE-2016-9843"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1003580 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1003580"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1013882 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1013882"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1038505 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1038505"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1062104 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1062104"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1116686"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1120866 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1120866"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1123150 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1123150"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1127473 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1127473"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1184301 for CVE-2016-9843",
          "url": "https://bugzilla.suse.com/1184301"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 9.8,
            "baseSeverity": "CRITICAL",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2016-9843"
    },
    {
      "cve": "CVE-2018-3058",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3058"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: MyISAM). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3058",
          "url": "https://www.suse.com/security/cve/CVE-2018-3058"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1101676 for CVE-2018-3058",
          "url": "https://bugzilla.suse.com/1101676"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3058",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.3,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3058"
    },
    {
      "cve": "CVE-2018-3060",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3060"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.22 and prior and 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all MySQL Server accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3060",
          "url": "https://www.suse.com/security/cve/CVE-2018-3060"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3060"
    },
    {
      "cve": "CVE-2018-3063",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3063"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.5.60 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3063",
          "url": "https://www.suse.com/security/cve/CVE-2018-3063"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1101677 for CVE-2018-3063",
          "url": "https://bugzilla.suse.com/1101677"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3063",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3063"
    },
    {
      "cve": "CVE-2018-3064",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3064"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.40 and prior, 5.7.22 and prior and 8.0.11 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.0 Base Score 7.1 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3064",
          "url": "https://www.suse.com/security/cve/CVE-2018-3064"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1103342 for CVE-2018-3064",
          "url": "https://bugzilla.suse.com/1103342"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3064",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 7.1,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "important"
        }
      ],
      "title": "CVE-2018-3064"
    },
    {
      "cve": "CVE-2018-3066",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3066"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Options). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 3.3 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3066",
          "url": "https://www.suse.com/security/cve/CVE-2018-3066"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1101678 for CVE-2018-3066",
          "url": "https://bugzilla.suse.com/1101678"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3066",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 3.3,
            "baseSeverity": "LOW",
            "vectorString": "CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "low"
        }
      ],
      "title": "CVE-2018-3066"
    },
    {
      "cve": "CVE-2018-3143",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3143"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3143",
          "url": "https://www.suse.com/security/cve/CVE-2018-3143"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112421 for CVE-2018-3143",
          "url": "https://bugzilla.suse.com/1112421"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3143",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3143"
    },
    {
      "cve": "CVE-2018-3156",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3156"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3156",
          "url": "https://www.suse.com/security/cve/CVE-2018-3156"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112417 for CVE-2018-3156",
          "url": "https://bugzilla.suse.com/1112417"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3156",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3156"
    },
    {
      "cve": "CVE-2018-3162",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3162"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3162",
          "url": "https://www.suse.com/security/cve/CVE-2018-3162"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112415 for CVE-2018-3162",
          "url": "https://bugzilla.suse.com/1112415"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3162",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3162"
    },
    {
      "cve": "CVE-2018-3173",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3173"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3173",
          "url": "https://www.suse.com/security/cve/CVE-2018-3173"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112386 for CVE-2018-3173",
          "url": "https://bugzilla.suse.com/1112386"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3173",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3173"
    },
    {
      "cve": "CVE-2018-3174",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3174"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3174",
          "url": "https://www.suse.com/security/cve/CVE-2018-3174"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112368 for CVE-2018-3174",
          "url": "https://bugzilla.suse.com/1112368"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3174",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 5.3,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:N/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3174"
    },
    {
      "cve": "CVE-2018-3185",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3185"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.0 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3185",
          "url": "https://www.suse.com/security/cve/CVE-2018-3185"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112384 for CVE-2018-3185",
          "url": "https://bugzilla.suse.com/1112384"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3185",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 5.5,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3185"
    },
    {
      "cve": "CVE-2018-3200",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3200"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3200",
          "url": "https://www.suse.com/security/cve/CVE-2018-3200"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112404 for CVE-2018-3200",
          "url": "https://bugzilla.suse.com/1112404"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3200",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3200"
    },
    {
      "cve": "CVE-2018-3251",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3251"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3251",
          "url": "https://www.suse.com/security/cve/CVE-2018-3251"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112397 for CVE-2018-3251",
          "url": "https://bugzilla.suse.com/1112397"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3251",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3251"
    },
    {
      "cve": "CVE-2018-3277",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3277"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3277",
          "url": "https://www.suse.com/security/cve/CVE-2018-3277"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112391 for CVE-2018-3277",
          "url": "https://bugzilla.suse.com/1112391"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3277",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3277"
    },
    {
      "cve": "CVE-2018-3282",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3282"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Storage Engines). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3282",
          "url": "https://www.suse.com/security/cve/CVE-2018-3282"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112432 for CVE-2018-3282",
          "url": "https://bugzilla.suse.com/1112432"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3282",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3282"
    },
    {
      "cve": "CVE-2018-3284",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2018-3284"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
          "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2018-3284",
          "url": "https://www.suse.com/security/cve/CVE-2018-3284"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1112377 for CVE-2018-3284",
          "url": "https://bugzilla.suse.com/1112377"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1116686 for CVE-2018-3284",
          "url": "https://bugzilla.suse.com/1116686"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 4.4,
            "baseSeverity": "MEDIUM",
            "vectorString": "CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.0"
          },
          "products": [
            "HPE Helion OpenStack 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "HPE Helion OpenStack 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "HPE Helion OpenStack 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "HPE Helion OpenStack 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud 8:mariadb-tools-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:galera-3-wsrep-provider-25.3.24-4.3.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:libmariadb3-3.0.6-3.6.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-client-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-errormessages-10.2.21-4.8.1.noarch",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-galera-10.2.21-4.8.1.x86_64",
            "SUSE OpenStack Cloud Crowbar 8:mariadb-tools-10.2.21-4.8.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2019-03-18T10:19:44Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2018-3284"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…