mysql-dfsg-5.0 5.0.38-0ubuntu1.1 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.0.38-0ubuntu1.1) feisty-security; urgency=low

  * SECURITY UPDATE: denial of service via crafted IF clause
  * debian/patches/91_CVE-2007-2583.dpatch: fix sql/item_cmpfunc.cc to verify
    res is not NULL
  * SECURITY UPDATE: privilege escalation
  * debian/patches/91_CVE-2007-2691.dpatch: fix sql/sql_parse.cc to make sure
    DROP privileges are required when using RENAME TABLE statements
  * SECURITY UPDATE: denial of service via crafted authentication request
  * debian/patches/91_CVE-2007-3780.dpatch: fix sql/sql_parse.cc to not
    overflow a signed char
  * SECURITY UPDATE: privilege escalation via views
  * debian/patches/91_CVE-2007-3782.dpatch: fix sql/sql_prepare.cc and
    sql/sql_update.cc to properly verify access privileges to external tables
  * SECURITY UPDATE: warn on startup if root mysql account has a blank
    password. debian/mysql-server-5.0.mysql.init: supply 'reset-password' and
    check for blank password.  Based on work by Soren Hansen.
  * References
    CVE-2007-2583
    CVE-2007-2691
    CVE-2007-3780
    CVE-2007-3782
    Launchpad #119075

 -- Jamie Strandboge <email address hidden>   Wed,  3 Oct 2007 13:32:38 -0400

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Feisty
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.0_5.0.38.orig.tar.gz 15.8 MiB 0940940c2417938c459b937a937db77042263b46755ebc59ad90f6c49df02c39
mysql-dfsg-5.0_5.0.38-0ubuntu1.1.diff.gz 145.4 KiB 1163d4bacbd82ae42484ea43c9fbf1535a77d327184e300cca9e0a49e32a357d
mysql-dfsg-5.0_5.0.38-0ubuntu1.1.dsc 1.2 KiB 3d7df5bf3edc1ce3cd6676b21c3aa8da5fa4568d67ed7055f9b1b90ab2cfb29a

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu feisty.

No description available for libmysqlclient15-dev in ubuntu feisty.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu feisty.

No description available for libmysqlclient15off in ubuntu feisty.

mysql-client: No summary available for mysql-client in ubuntu feisty.

No description available for mysql-client in ubuntu feisty.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu feisty.

No description available for mysql-client-5.0 in ubuntu feisty.

mysql-common: No summary available for mysql-common in ubuntu feisty.

No description available for mysql-common in ubuntu feisty.

mysql-server: No summary available for mysql-server in ubuntu feisty.

No description available for mysql-server in ubuntu feisty.

mysql-server-4.1: No summary available for mysql-server-4.1 in ubuntu feisty.

No description available for mysql-server-4.1 in ubuntu feisty.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu feisty.

No description available for mysql-server-5.0 in ubuntu feisty.