Skip to content
Oracle Linux 10 Security Issues: MySQL and MariaDB Connector Patches Released

Oracle Linux 10 Security Issues: MySQL and MariaDB Connector Patches Released

First seen 28 Jul 2026, 15:16 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster July 29, 2026 at 13:48 UTC

On July 28, 2026, Oracle released security advisories for Oracle Linux 10 addressing vulnerabilities in MySQL 8.4 and MariaDB Connector C. The MySQL 8.4 advisory (ELSA-2026-20693) includes multiple CVEs, notably CVE-2026-21998 and CVE-2026-22001, which could lead to privilege escalation and system compromise. The MariaDB Connector C advisory (ELSA-2026-43505) addresses a critical vulnerability, CVE-2026-44172, which poses a significant risk to users. Both advisories recommend auditing Linux privileges to mitigate risks. The patches are available for various architectures, including x86_64 and aarch64. Organizations using affected versions are urged to apply the updates to prevent potential exploitation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 44d ago How this analysis works

Timeline

2026-04-21
Multiple CVEs published for MySQL 8.4
CVE-2026-21998, CVE-2026-22001, and others were disclosed, affecting Oracle Linux 10 systems.
Linuxsecurity
2026-04-21
CVE-2026-22001 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34276 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-22002 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-35237 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34271 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34303 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34270 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-22009 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-21998 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE

More articles in this cluster (2)

Following this threat?

Track CVE-2026-21998 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed