Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:0357 - Security Advisory
Issued:
2026-01-08
Updated:
2026-01-08

RHSA-2026:0357 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: mariadb:10.3 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for the mariadb:10.3 module is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL.

Security Fix(es):

  • mariadb: MariaDB: mariadb-dump utility vulnerable to remote code execution via improper path validation (CVE-2025-13699)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.2 x86_64

Fixes

  • BZ - 2417693 - CVE-2025-13699 mariadb: MariaDB: mariadb-dump utility vulnerable to remote code execution via improper path validation

CVEs

  • CVE-2025-13699

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 8.2

SRPM
Judy-1.0.5-18.module+el8+2765+cfa4f87b.src.rpm SHA-256: bd2eba6fcd7c08e2e5397e7b702e8f7b6a4db0937eb74c5a086dfd8d855c5b9d
galera-25.3.32-1.module+el8.2.0+10474+c7510d9c.src.rpm SHA-256: a61b227c435bd9c40311bc220532153530dd7203147916b87f09f83323037bb1
mariadb-10.3.28-2.module+el8.2.0+23809+9df5005f.src.rpm SHA-256: 679ff68027534cf5b975e5547b9e3226a5330972e6056b509d7e257cf3f9ec23
x86_64
Judy-1.0.5-18.module+el8+2765+cfa4f87b.x86_64.rpm SHA-256: 88a29f33354754a242d50476ca18bb99d2af3884742e4f31c276ebee7c69338a
Judy-debuginfo-1.0.5-18.module+el8+2765+cfa4f87b.x86_64.rpm SHA-256: f2ca433f1ce80240b1a4c7a66d967d877504b9d31264c774013f857ed2a05623
Judy-debugsource-1.0.5-18.module+el8+2765+cfa4f87b.x86_64.rpm SHA-256: 6d430b0e9a8de476437df76c6c876444cc0635c1d3ca27a157c7c13e16668f70
galera-25.3.32-1.module+el8.2.0+10474+c7510d9c.x86_64.rpm SHA-256: bcfd5b856eda25681d5c2aa3c23c9b74b74f51469ca81c3e21a605d8cc4f0ea7
galera-debuginfo-25.3.32-1.module+el8.2.0+10474+c7510d9c.x86_64.rpm SHA-256: 516d2fd36137f412c03e991956c3147cef6bb6a100d706143153bde3b5d3b7a4
galera-debugsource-25.3.32-1.module+el8.2.0+10474+c7510d9c.x86_64.rpm SHA-256: 9c15a775a0bc6ad19f2ed1f53553b25df2f660aeeb756b13ed1c5f357184a1e4
mariadb-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: c2298f1280fb713fccd5239d28b7c048ded5206f6b9968efc86f0c6a08ddfb9f
mariadb-backup-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 7af6f1b568aa713e877223ee385433a02d8714966d7f738fbe003bcc61adf10b
mariadb-backup-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 83db1310e46f39bf0e5d533970ae6d42aed91256eb31c186bd085a169c6d5ffe
mariadb-common-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: af9002d75c3f7a1b524d50f04e8cc1df41a56441cfc2859202ae14d6854cbdb1
mariadb-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: a897546353fb22fb18f85c31963b46131b97be531e09b5d0a8f0dcc02cf3de19
mariadb-debugsource-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 50af63106d4c8ea177675f23d86973c5fc4087ed868de009b0a938ae386147b0
mariadb-devel-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: cb1e279e27ad9d59ad8fd6d1cbe863d72c4b9a80b6c84924c06299c53a6d0658
mariadb-embedded-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 57147a599251f0d0b65550b98f68801d7463ddd27ba1a9265ed958e0f0b95a9b
mariadb-embedded-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 56b8023a4b1676196190bfeb910f0d64c68a5ebda3d318a67d444125692d006d
mariadb-embedded-devel-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: b8615cd593ba27eac8fbd68aa1cf1729ceeccd07e88c75868e2bc519d3250436
mariadb-errmsg-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: fac1b8d05585f29b953566ae0724ab9c3cb9e093c79d47f6dbc01c12d74565a3
mariadb-gssapi-server-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 18de241e7e4ded3f849b77b76dbbf30a6a4d99e0bb247400ec65e5fcb9d2f41b
mariadb-gssapi-server-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 2351b3bfea68b76bb06085421b6136e8146ce8e8233c1e005e06b7c6c749a95e
mariadb-oqgraph-engine-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: de9cbd3a6f43d947f4ada4966e85d5b3260f5837151383f7751790a966264ddd
mariadb-oqgraph-engine-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 2dd460c8191d6f2b9fbe75916274fe77c3324137bcaeac17bf75e7b80f2d583e
mariadb-server-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 69b9a896c3b7fb22dcf2142b7dd76bde97f81967380eac03c7be0cac925b2ede
mariadb-server-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 580137c2cebe80649f1e370dde7079a1dfa6a3f1138cd51050173e2575693be7
mariadb-server-galera-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: d1c6f81bfee4b5c420b68acedaed547a532f79f827da739a29f522f1295b2d82
mariadb-server-utils-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 07c0b04643391b21a27fe9a6d5e1e19464157af3bd5149eb2a23a2ca452d6587
mariadb-server-utils-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 5a9432cdd547197abaf4e2a95f23979e1cc0a39110cdf7a4527ce631f05f5e27
mariadb-test-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: 42fb5f8392b45260a73f37df9503be68590fbfae5a0e42f19ababb97096d22e2
mariadb-test-debuginfo-10.3.28-2.module+el8.2.0+23809+9df5005f.x86_64.rpm SHA-256: a564d2aa9d00b33e3e8274562cf97130c6b1bc997233160381d9f9787ec6343e

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility