Oracle Linux 10 Security Issues: MySQL and MariaDB Connector Patches Released

Oracle Linux 10 Security Issues: MySQL and MariaDB Connector Patches Released

First seen 28 Jul 2026, 15:16 UTC Linuxsecurity 80% similarity 72.5

Article Content

Browse articles
ThreatCluster

On July 28, 2026, Oracle released security advisories for Oracle Linux 10 addressing vulnerabilities in MySQL 8.4 and MariaDB Connector C. The MySQL 8.4 advisory (ELSA-2026-20693) includes multiple CVEs, notably CVE-2026-21998 and CVE-2026-22001, which could lead to privilege escalation and system compromise. The MariaDB Connector C advisory (ELSA-2026-43505) addresses a critical vulnerability, CVE-2026-44172, which poses a significant risk to users. Both advisories recommend auditing Linux privileges to mitigate risks. The patches are available for various architectures, including x86_64 and aarch64. Organizations using affected versions are urged to apply the updates to prevent potential exploitation.

Key Points: • Oracle released security patches for MySQL 8.4 and MariaDB Connector C on July 28, 2026. • MySQL vulnerabilities include CVE-2026-21998 and CVE-2026-22001, which may allow privilege escalation. • CVE-2026-44172 in MariaDB Connector C is classified as critical and requires immediate attention.

ThreatCluster AI How this analysis works

Timeline

2026-04-21
Multiple CVEs published for MySQL 8.4
CVE-2026-21998, CVE-2026-22001, and others were disclosed, affecting Oracle Linux 10 systems.
Linuxsecurity
2026-04-21
CVE-2026-22001 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34276 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-22002 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-35237 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34271 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34303 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-34270 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-22009 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-21
CVE-2026-21998 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE

Community

Browse all →