AWS AmazonRDS: Document new RDS for MySQL Extended Support releases fixing CVEs
Summary
Adds release notes for RDS Extended Support versions 8.0.46-RDS.20260908 and 5.7.44-RDS.20260902 with extensive CVE-fixed lists and tzdata updates, updates the version calendar table, and repairs a malformed CVE URL (hhttps -> https) for CVE-2025-53023.
Security assessment
The diff explicitly enumerates dozens of CVEs remediated in new engine patch releases (e.g., CVE-2026-60314, CVE-2026-60725, CVE-2026-60315 in 8.0.46-RDS.20260908 and 5.7.44-RDS.20260902), plus fixes a broken advisory link for CVE-2025-53023; this is concrete documentation of fixed vulnerabilities users must apply via patching or RDS Extended Support.
Evidence
* [CVE-2026-60314](https://nvd.nist.gov/vuln/detail/CVE-2026-60314)
Diff
diff --git a/AmazonRDS/latest/UserGuide/MySQL.Concepts.VersionMgmt.md b/AmazonRDS/latest/UserGuide/MySQL.Concepts.VersionMgmt.md index a383fb194..339623100 100644 --- a//AmazonRDS/latest/UserGuide/MySQL.Concepts.VersionMgmt.md +++ b//AmazonRDS/latest/UserGuide/MySQL.Concepts.VersionMgmt.md @@ -93,0 +94 @@ MySQL engine version | Community release date | RDS release date | RDS end of Ex +8.0.46-RDS.20260908* | Not applicable | 23 September 2026 | 30 September 2027 @@ -105,0 +107 @@ MySQL engine version | Community release date | RDS release date | RDS end of Ex +5.7.44-RDS.20260902* | Not applicable | 16 September 2026 | 30 September 2027 @@ -283,0 +286,2 @@ MySQL version 8.0.46 is now available on Amazon RDS. This release contains fixes + * Updated the time zone information to base it on `tzdata2026b`. + @@ -399,0 +404,2 @@ The following content lists all releases of RDS Extended Support for RDS for MyS + * RDS Extended Support for RDS for MySQL version 8.0.46-RDS.20260908 + @@ -401,0 +408,2 @@ The following content lists all releases of RDS Extended Support for RDS for MyS + * RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260902 + @@ -426,0 +435,85 @@ The following content lists all releases of RDS Extended Support for RDS for MyS +### RDS Extended Support for RDS for MySQL version 8.0.46-RDS.20260908 + +RDS Extended Support for RDS for MySQL version 8.0.46-RDS.20260908 is available. + +**New features and enhancements** + + * Updated the time zone information to base it on `tzdata2026c`. + + + + +**Bugs fixed** + + * Fixed an issue that caused a "Row size too large" error with tables using InnoDB DYNAMIC row format. + + + + +**CVEs fixed** + + * [CVE-2026-60314](https://nvd.nist.gov/vuln/detail/CVE-2026-60314) + + * [CVE-2026-60725](https://nvd.nist.gov/vuln/detail/CVE-2026-60725) + + * [CVE-2026-60315](https://nvd.nist.gov/vuln/detail/CVE-2026-60315) + + * [CVE-2026-60316](https://nvd.nist.gov/vuln/detail/CVE-2026-60316) + + * [CVE-2026-61094](https://nvd.nist.gov/vuln/detail/CVE-2026-61094) + + * [CVE-2026-60163](https://nvd.nist.gov/vuln/detail/CVE-2026-60163) + + * [CVE-2026-60332](https://nvd.nist.gov/vuln/detail/CVE-2026-60332) + + * [CVE-2026-60186](https://nvd.nist.gov/vuln/detail/CVE-2026-60186) + + * [CVE-2026-47023](https://nvd.nist.gov/vuln/detail/CVE-2026-47023) + + * [CVE-2026-60184](https://nvd.nist.gov/vuln/detail/CVE-2026-60184) + + * [CVE-2026-60185](https://nvd.nist.gov/vuln/detail/CVE-2026-60185) + + * [CVE-2026-60187](https://nvd.nist.gov/vuln/detail/CVE-2026-60187) + + * [CVE-2026-60188](https://nvd.nist.gov/vuln/detail/CVE-2026-60188) + + * [CVE-2026-60189](https://nvd.nist.gov/vuln/detail/CVE-2026-60189) + + * [CVE-2026-60190](https://nvd.nist.gov/vuln/detail/CVE-2026-60190) + + * [CVE-2026-60191](https://nvd.nist.gov/vuln/detail/CVE-2026-60191) + + * [CVE-2026-60331](https://nvd.nist.gov/vuln/detail/CVE-2026-60331) + + * [CVE-2026-60585](https://nvd.nist.gov/vuln/detail/CVE-2026-60585) + + * [CVE-2026-60747](https://nvd.nist.gov/vuln/detail/CVE-2026-60747) + + * [CVE-2026-47012](https://nvd.nist.gov/vuln/detail/CVE-2026-47012) + + * [CVE-2026-47064](https://nvd.nist.gov/vuln/detail/CVE-2026-47064) + + * [CVE-2026-60145](https://nvd.nist.gov/vuln/detail/CVE-2026-60145) + + * [CVE-2026-60171](https://nvd.nist.gov/vuln/detail/CVE-2026-60171) + + * [CVE-2026-61109](https://nvd.nist.gov/vuln/detail/CVE-2026-61109) + + * [CVE-2026-60177](https://nvd.nist.gov/vuln/detail/CVE-2026-60177) + + * [CVE-2026-60178](https://nvd.nist.gov/vuln/detail/CVE-2026-60178) + + * [CVE-2026-60182](https://nvd.nist.gov/vuln/detail/CVE-2026-60182) + + * [CVE-2026-60183](https://nvd.nist.gov/vuln/detail/CVE-2026-60183) + + * [CVE-2026-47052](https://nvd.nist.gov/vuln/detail/CVE-2026-47052) + + * [CVE-2026-61081](https://nvd.nist.gov/vuln/detail/CVE-2026-61081) + + * [CVE-2026-46936](https://nvd.nist.gov/vuln/detail/CVE-2026-46936) + + + + @@ -431 +524 @@ RDS Extended Support for RDS for MySQL version 8.0.46-RDS.20260624 is available. -**CVEs fixed:** +**CVEs fixed** @@ -437,0 +531,56 @@ RDS Extended Support for RDS for MySQL version 8.0.46-RDS.20260624 is available. +### RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260902 + +RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260902 is available. + +**New features and enhancements** + + * Updated the time zone information to base it on `tzdata2026c`. + + + + +**CVEs fixed** + + * [CVE-2026-60315](https://nvd.nist.gov/vuln/detail/CVE-2026-60315) + + * [CVE-2026-60316](https://nvd.nist.gov/vuln/detail/CVE-2026-60316) + + * [CVE-2026-60163](https://nvd.nist.gov/vuln/detail/CVE-2026-60163) + + * [CVE-2026-60332](https://nvd.nist.gov/vuln/detail/CVE-2026-60332) + + * [CVE-2026-60186](https://nvd.nist.gov/vuln/detail/CVE-2026-60186) + + * [CVE-2026-47012](https://nvd.nist.gov/vuln/detail/CVE-2026-47012) + + * [CVE-2026-47064](https://nvd.nist.gov/vuln/detail/CVE-2026-47064) + + * [CVE-2026-60145](https://nvd.nist.gov/vuln/detail/CVE-2026-60145) + + * [CVE-2026-60171](https://nvd.nist.gov/vuln/detail/CVE-2026-60171) + + * [CVE-2026-47023](https://nvd.nist.gov/vuln/detail/CVE-2026-47023) + + * [CVE-2026-60184](https://nvd.nist.gov/vuln/detail/CVE-2026-60184) + + * [CVE-2026-60185](https://nvd.nist.gov/vuln/detail/CVE-2026-60185) + + * [CVE-2026-60187](https://nvd.nist.gov/vuln/detail/CVE-2026-60187) + + * [CVE-2026-60188](https://nvd.nist.gov/vuln/detail/CVE-2026-60188) + + * [CVE-2026-60189](https://nvd.nist.gov/vuln/detail/CVE-2026-60189) + + * [CVE-2026-60190](https://nvd.nist.gov/vuln/detail/CVE-2026-60190) + + * [CVE-2026-60191](https://nvd.nist.gov/vuln/detail/CVE-2026-60191) + + * [CVE-2026-60331](https://nvd.nist.gov/vuln/detail/CVE-2026-60331) + + * [CVE-2026-60585](https://nvd.nist.gov/vuln/detail/CVE-2026-60585) + + * [CVE-2026-60747](https://nvd.nist.gov/vuln/detail/CVE-2026-60747) + + + + @@ -442 +591,8 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260624 is available. -**CVEs fixed:** +**New features and enhancements** + + * Updated the time zone information to base it on `tzdata2026b`. + + + + +**CVEs fixed** @@ -453 +609 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260521 is available. -**Bugs fixed:** +**Bugs fixed** @@ -460 +616 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260521 is available. -**CVEs fixed:** +**CVEs fixed** @@ -497 +653 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260212 is available. -**Bugs fixed:** +**Bugs fixed** @@ -506 +662 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20260212 is available. -**CVEs fixed:** +**CVEs fixed** @@ -523 +679 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20251212 is available. -**Bugs fixed:** +**Bugs fixed** @@ -538 +694 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20251212 is available. -**CVEs fixed:** +**CVEs fixed** @@ -561 +717 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20250818 is available. -**Bugs fixed:** +**Bugs fixed** @@ -572 +728 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20250818 is available. -**CVEs fixed:** +**CVEs fixed** @@ -592 +748 @@ RDS Extended Support for RDS for MySQL version 5.7.44-RDS.20250818 is available. - * [CVE-2025-53023](hhttps://nvd.nist.gov/vuln/detail/CVE-2025-53023) + * [CVE-2025-53023](https://nvd.nist.gov/vuln/detail/CVE-2025-53023)