What MariaDB/server shipped
Written by FoxPlug from public releases; not affiliated with Mariadb. An automatic summary of the public release, pull request and commit data of github.com/MariaDB/server. Mariadb did not write it and does not use or endorse FoxPlug. Every line links to the public change it describes.
Get a weekly update like this for your product, free
Week of September 21, 2026
What shipped
- Fixed a crash in multi-table DELETE statements with index hints, impossible WHERE conditions, and window functions that failed to initialize deletion tables. Pull request #5478
- Fixed
innodb_stats_methodsetting being ignored wheninnodb_stats_persistentis enabled. Pull request #4204 - Fixed buffer overflow in CREATE DATABASE COMMENT when comment length validation did not properly truncate the string in all SQL modes. Pull request #5743
- Fixed heap buffer overflow in CONNECT engine when pushing down WHERE clauses with large string literals to external tables. Pull request #5750
- Fixed SELECT with descending ORDER BY on partitioned tables through secondary indexes stopping early and omitting qualifying rows. Pull request #5708
- Fixed indefinite hang when innodb_encryption_threads=0 and innodb_encryption_rotation_iops=0 due to incomplete condition signaling. Pull request #5653
- Deferred PROXY protocol host validation checks until after SSL handshake completion to avoid sending them in clear text. Pull request #5736
- Fixed instant ALTER TABLE rollback corrupting virtual columns by preventing double-free of virtual column definitions. Pull request #5691
- Added hardware-accelerated CRC32C implementation for 64-bit RISC-V systems with Zbc carry-less multiplication support. Pull request #5669
- Changed sys schema routine installation to use CREATE OR REPLACE instead of DROP/CREATE to preserve EXECUTE grants during upgrades. Pull request #5698
Why it matters
This week addresses critical crashes and data corruption issues in DELETE operations, partitioned table queries, and instant ALTER TABLE. Security improvements defer PROXY protocol checks to after SSL handshake. Multiple buffer overflow and uninitialized value fixes enhance stability across different storage engines and platforms.
Changelog entry
- MDEV-40573: Fixed crash in multi-table DELETE with impossible WHERE and window functions Pull request #5478
- MDEV-19574:
innodb_stats_methodnow honored with innodb_stats_persistent=ON Pull request #4204 - MDEV-41157: Fixed CREATE DATABASE COMMENT buffer overflow Pull request #5743
- MDEV-41193: Fixed CONNECT engine heap buffer overflow in WHERE clause pushdown Pull request #5750
- MDEV-41055: Fixed indefinite hang with innodb_encryption_threads=0 and zero rotation IOPS Pull request #5653
- MDEV-40479: Fixed incorrect results in partitioned table descending ORDER BY through secondary index Pull request #5708
- MDEV-40967: Deferred PROXY protocol host validation until after SSL handshake Pull request #5736
- MDEV-41072: Fixed instant ALTER TABLE rollback corrupting virtual columns Pull request #5691
- MDEV-41115: Added RISC-V Zbc hardware-accelerated CRC32C implementation Pull request #5669
- MDEV-39993: Use CREATE OR REPLACE for sys schema routines to preserve EXECUTE grants Pull request #5698
MariaDB weekly: Fixed multi-table DELETE crashes, partitioned table query results, buffer overflows in CONNECT and CREATE DATABASE, instant ALTER TABLE corruption, and PROXY protocol security. Added RISC-V CRC32C acceleration.
MariaDB weekly digest: This week's fixes address critical stability and security issues. We resolved crashes in multi-table DELETE with window functions, incorrect results in partitioned table descending scans, and buffer overflows in the CONNECT engine. Security improvements defer PROXY protocol validation until after SSL handshake. Virtual column corruption during instant ALTER TABLE rollback is fixed. We also added hardware-accelerated CRC32C for RISC-V systems and improved sys schema upgrade handling to preserve user grants.
Week of September 14, 2026
What shipped
- MariaDB Community Server 13.1.1 RC released. Release
- MariaDB Community Server 13.0.2 released. Release
- FILTER clause support added for aggregate functions, enabling SQL-standard filtering without CASE workarounds. Pull request #4439
- Galera appliers no longer hang when using foreign keys with UUID, INET4, or INET6 data types. Pull request #5634
- UPDATE...IN(SELECT) no longer acquires spurious gap locks on foreign key indexes, reducing deadlock occurrences. Pull request #4682
- DELETE now properly reports errors when the storage engine fails during row positioning instead of silently skipping rows. Pull request #5685
- INFORMATION_SCHEMA.INNODB_SYS_TABLES queries no longer crash after
innodb_force_recoverywhen uncommitted CREATE TABLE records exist. Pull request #5644 - Item_sum and Item_cache now implement proper deep_copy() instead of shallow copies, fixing issues with key value copying. Pull request #5536
- Memory leak in
wsrep_sst_prepareerror handling fixed by preserving original error codes. Pull request #5690 - LRU list scan pointer now correctly stays in place until crossing the old/young boundary rather than rewinding on every call. Pull request #5695
Why it matters
Two new release versions provide stability improvements and bug fixes. Major features like FILTER clause for aggregates and fixes to Galera foreign key handling address long-standing usability issues. Critical fixes to error handling, memory management, and query locking reduce crashes and deadlocks in production environments.
Changelog entry
- DELETE now reports errors from storage engine ha_rnd_pos() failures instead of silently skipping rows. Pull request #5685
- LRU iterator scan hand pointer correctly maintains position in cold sublist and rewinds only when crossing to hot sublist. Pull request #5695
- INFORMATION_SCHEMA.INNODB_SYS_TABLES no longer aborts when reading uncommitted CREATE TABLE records during
innodb_force_recovery. Pull request #5644 - Memory leak in
wsrep_sst_prepareerror handling fixed by preserving malloc failure codes. Pull request #5690 - UPDATE...IN(SELECT) no longer acquires spurious gap locks on foreign key secondary indexes. Pull request #4682
- Item_sum and Item_cache implement proper deep_copy() to avoid sharing references in key part operations. Pull request #5536
innodb_buffer_pool_size_maxnow defined as 0 on ThreadSanitizer builds to prevent excessive startup time. Pull request #5680- FILTER clause now supported for SQL-standard aggregate function filtering. Pull request #4439
- CHANGE MASTER error cleanup no longer crashes when relay log file name exceeds OS limits. Pull request #5624
- Galera appliers no longer hang when processing foreign keys with UUID, INET4, or INET6 data types. Pull request #5634
MariaDB 13.1.1 RC and 13.0.2 are now available. This week brings FILTER clause support for aggregates, fixes for Galera applier hangs with UUID/INET types, and improved error reporting in storage engine operations.
Two releases this week: MariaDB Community Server 13.1.1 RC and 13.0.2. Notable improvements include SQL-standard FILTER clause for aggregate functions, resolution of Galera applier hangs with UUID/INET4/INET6 foreign keys, elimination of spurious gap locks in UPDATE...IN(SELECT), and fixes to error handling in replication and recovery scenarios. These updates address both new functionality requests and critical stability issues.