mysql-dfsg-5.0 5.0.24a-9ubuntu2.1 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.0.24a-9ubuntu2.1) edgy-security; urgency=low

  * SECURITY UPDATE: denial of service via crafted IF clause
  * debian/patches/97_CVE-2007-2583.dpatch: fix sql/item_cmpfunc.cc to verify
    res is not NULL
  * SECURITY UPDATE: privilege escalation
  * debian/patches/97_CVE-2007-2691.dpatch: fix sql/sql_parse.cc to make sure
    DROP privileges are required when using RENAME TABLE statements
  * SECURITY UPDATE: denial of service via crafted authentication request
  * debian/patches/97_CVE-2007-3780.dpatch: fix sql/sql_parse.cc to not
    overflow a signed char
  * SECURITY UPDATE: privilege escalation via views
  * debian/patches/97_CVE-2007-3782.dpatch: fix sql/sql_prepare.cc and
    sql/sql_update.cc to properly verify access privileges to external tables
  * SECURITY UPDATE: warn on startup if root mysql account has a blank
    password. debian/mysql-server-5.0.mysql.init: supply 'reset-password' and
    check blank password. Based on work by Soren Hansen.
  * References
    CVE-2007-2583
    CVE-2007-2691
    CVE-2007-3780
    CVE-2007-3782
    Launchpad #119075

 -- Jamie Strandboge <email address hidden>   Wed,  3 Oct 2007 15:18:46 -0400

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Edgy
Original maintainer:
Christian Hammers
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.0_5.0.24a.orig.tar.gz 17.8 MiB c260e34e582bed5818e1a8361959dcca2aac09ecc93cf4ae2d4c18f67ec93a54
mysql-dfsg-5.0_5.0.24a-9ubuntu2.1.diff.gz 141.1 KiB d545b0d30d93fc01bd60fbf71e304ed83c393b62670fb0dac68d38b55dbdfeda
mysql-dfsg-5.0_5.0.24a-9ubuntu2.1.dsc 1.1 KiB ded91bf7db5bc887b42c17ad3eaadc49838982fae080a5e73043d472681a807f

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu edgy.

No description available for libmysqlclient15-dev in ubuntu edgy.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu edgy.

No description available for libmysqlclient15off in ubuntu edgy.

mysql-client: No summary available for mysql-client in ubuntu edgy.

No description available for mysql-client in ubuntu edgy.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu edgy.

No description available for mysql-client-5.0 in ubuntu edgy.

mysql-common: No summary available for mysql-common in ubuntu edgy.

No description available for mysql-common in ubuntu edgy.

mysql-server: No summary available for mysql-server in ubuntu edgy.

No description available for mysql-server in ubuntu edgy.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu edgy.

No description available for mysql-server-5.0 in ubuntu edgy.