Server crashes in Item_func_in::val_int or Assertion `in_item' failed in virtual longlong Item_func_in::val_int

Bug #1735876 reported by Ali Erturk TURKER
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
mariadb-5.5 (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

Please see https://jira.mariadb.org/browse/MDEV-13819 for the details of the bug.

This bug and 2 more security vulnerabilities were fixed in MariaDB 5.5.58 (Ref: https://mariadb.com/kb/en/library/mariadb-5558-release-notes/)

I would kindly ask you to update the MariaDB-5.5 package to the latest version.

Regards.

CVE References

Revision history for this message
Seth Arnold (seth-arnold) wrote :

Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is available, members of the security team will review it and publish the package. See the following link for more information: https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures

Changed in mariadb-5.5 (Ubuntu):
status: New → Incomplete
information type: Private Security → Public Security
Otto Kekäläinen (otto)
Changed in mariadb-5.5 (Ubuntu):
status: Incomplete → Confirmed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mariadb-5.5 - 5.5.58-1ubuntu0.14.04.1

---------------
mariadb-5.5 (5.5.58-1ubuntu0.14.04.1) trusty-security; urgency=high

  * SECURITY UPDATE: New upstream release 5.5.58. Includes fixes for
    the following security vulnerabilities (LP: #1740608):
    - CVE-2017-10378, MDEV-13819
    - CVE-2017-10268
  * Update previous changelog entries to contain new CVE identifiers
  * Includes upstream MDEV-13819 server crash fix (LP: #1735876)

 -- Otto Kekäläinen <email address hidden> Sat, 30 Dec 2017 17:55:52 +0200

Changed in mariadb-5.5 (Ubuntu):
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Related questions

Remote bug watches

Bug watches keep track of this bug in other bug trackers.