mysql-dfsg-5.0 5.0.24a-9ubuntu2.2 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.0.24a-9ubuntu2.2) edgy-security; urgency=low

  * SECURITY UPDATE: denial of service via crafted CONTAINS operation when
    using InnoDB
  * debian/patches/98_SECURITY_CVE-2007-5925.dpatch: make sure innodb returns
    error on unsupported operations (db0err.h, page0cur.h, ha_innodb.cc)
  * SECURITY UPDATE: privilege escalation using symlinks when using DATA
    DIRECTORY and INDEX DIRECTORY options via a RENAME TABLE statement
  * debian/patches/98_SECURITY_CVE-2007-5969.dpatch: fix for my_symlink2.c to
    properly check symlinks when performing a rename operation
  * SECURITY UPDATE: denial of service via SHOW TABLE STATUS query in
    federated engine
  * debian/patches/98_SECURITY_CVE-2007-6304.dpatch: fix for ha_federated.cc
    to to return error if the response doesn't have enough columns
  * SECURITY UPDATE: information disclosure when using CREATE TABLE LIKE
    statements
  * debian/patches/98_SECURITY_CVE-2007-3781.dpatch: fix to enforce access
    privileges (sql_parse.cc, handler.h, sql_yacc.yy)
  * debian/control: Build-Depends on bison
  * References
    CVE-2007-5925
    CVE-2007-5969
    CVE-2007-6304
    CVE-2007-3781
    LP #172260

 -- Jamie Strandboge <email address hidden>   Wed, 19 Dec 2007 11:55:51 -0500

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Edgy
Original maintainer:
Christian Hammers
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.0_5.0.24a.orig.tar.gz 17.8 MiB c260e34e582bed5818e1a8361959dcca2aac09ecc93cf4ae2d4c18f67ec93a54
mysql-dfsg-5.0_5.0.24a-9ubuntu2.2.diff.gz 145.6 KiB 2d7c0bdf88782f03bc504474f8ef6ff400f0f14dfde9595b3fc50fef5146cfcf
mysql-dfsg-5.0_5.0.24a-9ubuntu2.2.dsc 1.1 KiB 8976f43470901dc139b522cc2ca68136c7224eabfe30cdec57a3d24f92c84b2a

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu edgy.

No description available for libmysqlclient15-dev in ubuntu edgy.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu edgy.

No description available for libmysqlclient15off in ubuntu edgy.

mysql-client: No summary available for mysql-client in ubuntu edgy.

No description available for mysql-client in ubuntu edgy.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu edgy.

No description available for mysql-client-5.0 in ubuntu edgy.

mysql-common: No summary available for mysql-common in ubuntu edgy.

No description available for mysql-common in ubuntu edgy.

mysql-server: No summary available for mysql-server in ubuntu edgy.

No description available for mysql-server in ubuntu edgy.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu edgy.

No description available for mysql-server-5.0 in ubuntu edgy.