ALAS2023-2026-1844


Amazon Linux 2023 Security Advisory: ALAS2023-2026-1844
Advisory Released Date: 2026-06-22
Advisory Updated Date: 2026-06-22
Severity: Important

Issue Overview:

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). (CVE-2026-34303)

In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (--) or hash (#) style comments, the statement is not logged. (CVE-2026-3494)

During the SST the donor node is interpolating parameters that the joiner sent into the command line. Not all parameters were properly validated which could allow a malicious joiner to execute arbitrary shell commands on the donor side via the mariabackup SST method. (CVE-2026-44168)

mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. (CVE-2026-44171)

An application that was taking non-validated user input, escaping it with mysql_real_escape_string() and sending it to the database using text protocol and big5 character set was vulnerable to SQL injections, even though mysql_real_escape_string() was supposed to prevent them. (CVE-2026-44172)

MariaDB allowed SELECT ... INTO OUTFILE and SELECT ... INTO DUMPFILE without verifying the FILE privilege if the FROM clause contained only subqueries. (CVE-2026-44173)


Affected Packages:

mariadb1011


Issue Correction:
Run dnf update mariadb1011 --releasever 2023.12.20260622 or dnf update --advisory ALAS2023-2026-1844 --releasever 2023.12.20260622 to update your system.
More information on how to update your system can be found on this page: Amazon Linux 2023 documentation

New Packages:
aarch64:
    mariadb1011-oqgraph-engine-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-gssapi-server-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-sphinx-engine-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-backup-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-common-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-connect-engine-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-cracklib-password-check-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-test-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-sphinx-engine-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-server-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-client-utils-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-connect-engine-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-errmsg-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-pam-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-cracklib-password-check-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-devel-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-server-utils-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-server-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-gssapi-server-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-oqgraph-engine-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-server-utils-debuginfo-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-backup-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-pam-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-debugsource-10.11.18-1.amzn2023.0.1.aarch64
    mariadb1011-test-10.11.18-1.amzn2023.0.1.aarch64

src:
    mariadb1011-10.11.18-1.amzn2023.0.1.src

x86_64:
    mariadb1011-rocksdb-engine-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-test-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-client-utils-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-common-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-backup-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-devel-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-gssapi-server-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-server-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-server-utils-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-errmsg-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-pam-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-connect-engine-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-sphinx-engine-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-cracklib-password-check-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-cracklib-password-check-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-oqgraph-engine-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-connect-engine-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-sphinx-engine-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-gssapi-server-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-oqgraph-engine-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-pam-debuginfo-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-server-utils-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-rocksdb-engine-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-debugsource-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-server-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-backup-10.11.18-1.amzn2023.0.1.x86_64
    mariadb1011-test-10.11.18-1.amzn2023.0.1.x86_64