Critical Vulnerabilities in MariaDB Affecting openSUSE and SUSE Linux Enterprise Server

Critical Vulnerabilities in MariaDB Affecting openSUSE and SUSE Linux Enterprise Server

First seen 6 Jun 2026, 04:53 UTC LinuxsecurityCsa.Sgnvd.nist.gov 85% similarity 72.8

Article Content

Browse articles
ThreatCluster

Two critical advisories were issued for MariaDB affecting openSUSE and SUSE Linux Enterprise Server. The vulnerabilities include CVE-2026-3494, an audit plugin handling bypass, and CVE-2026-34303, an unspecified optimizer vulnerability. Other notable issues include unsafe parameter handling and path traversal vulnerabilities. The updates address multiple CVEs, including CVE-2026-44168, CVE-2026-44170, CVE-2026-44171, CVE-2026-44172, and CVE-2026-44173. The updates were released on June 5, 2026, and are rated critical. Affected systems include MariaDB installations on both platforms. Administrators are urged to apply the patches immediately to mitigate potential exploitation risks.

Key Points: • Critical vulnerabilities in MariaDB affect both openSUSE and SUSE Linux Enterprise Server. • Key CVEs include CVE-2026-3494 and CVE-2026-34303, with multiple other vulnerabilities addressed. • Patches were released on June 5, 2026, and are rated critical, requiring immediate application.

ThreatCluster AI

Timeline

2026-03-03
CVE-2026-3494 published
An audit plugin handling bypass vulnerability in MariaDB was disclosed, affecting various installations.
Linuxsecurity
2026-04-21
CVE-2026-34303 published
An unspecified vulnerability in the MySQL optimizer was disclosed, impacting MariaDB systems.
Linuxsecurity
2026-06-05
Critical updates released
SUSE released critical updates for MariaDB addressing multiple vulnerabilities, including CVE-2026-3494 and CVE-2026-34303.
Linuxsecurity
2026-06-05
Second critical advisory issued
Another advisory for SUSE Linux Enterprise Server 15 SP6 was released, addressing similar vulnerabilities in MariaDB.
Linuxsecurity

Community

Browse all →