Amazon Linux 2023 Security Advisory: ALAS2023-2026-1827
Advisory Released Date: 2026-06-12
Advisory Updated Date: 2026-06-12
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). (CVE-2026-34303)
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (--) or hash (#) style comments, the statement is not logged. (CVE-2026-3494)
Affected Packages:
mariadb114
Issue Correction:
Run dnf update mariadb114 --releasever 2023.12.20260611 or dnf update --advisory ALAS2023-2026-1827 --releasever 2023.12.20260611 to update your system.
More information on how to update your system can be found on this page: Amazon Linux 2023 documentation
aarch64:
mariadb114-oqgraph-engine-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-server-utils-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-connect-engine-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-test-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-sphinx-engine-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-cracklib-password-check-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-server-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-common-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-errmsg-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-pam-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-gssapi-server-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-backup-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-client-utils-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-gssapi-server-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-backup-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-server-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-oqgraph-engine-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-server-utils-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-devel-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-pam-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-cracklib-password-check-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-connect-engine-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-sphinx-engine-debuginfo-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-debugsource-11.4.10-1.amzn2023.0.1.aarch64
mariadb114-test-11.4.10-1.amzn2023.0.1.aarch64
src:
mariadb114-11.4.10-1.amzn2023.0.1.src
x86_64:
mariadb114-rocksdb-engine-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-oqgraph-engine-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-sphinx-engine-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-backup-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-cracklib-password-check-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-server-utils-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-common-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-pam-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-errmsg-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-backup-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-server-utils-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-connect-engine-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-connect-engine-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-server-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-oqgraph-engine-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-devel-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-cracklib-password-check-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-test-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-gssapi-server-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-gssapi-server-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-pam-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-debuginfo-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-sphinx-engine-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-rocksdb-engine-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-debugsource-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-client-utils-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-server-11.4.10-1.amzn2023.0.1.x86_64
mariadb114-test-11.4.10-1.amzn2023.0.1.x86_64