mysql-dfsg-5.0 5.0.38-0ubuntu1.2 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.0.38-0ubuntu1.2) feisty-security; urgency=low

  * SECURITY UPDATE: denial of service via crafted CONTAINS operation when
    using InnoDB
  * debian/patches/91_SECURITY_CVE-2007-5925.dpatch: make sure innodb returns
    error on unsupported operations (db0err.h, page0cur.h, ha_innodb.cc)
  * SECURITY UPDATE: privilege escalation using symlinks when using DATA
    DIRECTORY and INDEX DIRECTORY options via a RENAME TABLE statement
  * debian/patches/92_SECURITY_CVE-2007-5969.dpatch: fix for my_symlink2.c to
    properly check symlinks when performing a rename operation
  * SECURITY UPDATE: denial of service via SHOW TABLE STATUS query in
    federated engine
  * debian/patches/94_SECURITY_CVE-2007-6304.dpatch: fix for ha_federated.cc
    to to return error if the response doesn't have enough columns
  * SECURITY UPDATE: information disclosure when using CREATE TABLE LIKE
    statements
  * debian/patches/96_SECURITY_CVE-2007-3781.dpatch: fix to enforce access
    privileges (sql_parse.cc, handler.h, sql_yacc.yy)
  * References
    CVE-2007-5925
    CVE-2007-5969
    CVE-2007-6304
    CVE-2007-3781
    LP #172260

 -- Jamie Strandboge <email address hidden>   Wed, 19 Dec 2007 10:41:49 -0500

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Feisty
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.0_5.0.38.orig.tar.gz 15.8 MiB 0940940c2417938c459b937a937db77042263b46755ebc59ad90f6c49df02c39
mysql-dfsg-5.0_5.0.38-0ubuntu1.2.diff.gz 149.8 KiB 08368409aebb6bc8419c14c5924201c69b9392fa5378d26894b2eba91496fb2b
mysql-dfsg-5.0_5.0.38-0ubuntu1.2.dsc 1.2 KiB 18304ebde8c0eca6072459da2bbb5788ea4ae77a3352b8c970a5089d5021df6e

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu feisty.

No description available for libmysqlclient15-dev in ubuntu feisty.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu feisty.

No description available for libmysqlclient15off in ubuntu feisty.

mysql-client: No summary available for mysql-client in ubuntu feisty.

No description available for mysql-client in ubuntu feisty.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu feisty.

No description available for mysql-client-5.0 in ubuntu feisty.

mysql-common: No summary available for mysql-common in ubuntu feisty.

No description available for mysql-common in ubuntu feisty.

mysql-server: No summary available for mysql-server in ubuntu feisty.

No description available for mysql-server in ubuntu feisty.

mysql-server-4.1: No summary available for mysql-server-4.1 in ubuntu feisty.

No description available for mysql-server-4.1 in ubuntu feisty.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu feisty.

No description available for mysql-server-5.0 in ubuntu feisty.