mysql-dfsg-5.0 5.0.45-1ubuntu3.3 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.0.45-1ubuntu3.3) gutsy-security; urgency=low

  * no change build for -security upload

mysql-dfsg-5.0 (5.0.45-1ubuntu3.2) gutsy-proposed; urgency=low

  * SECURITY UPDATE: buffer overflow via ProcessOldClientHello() in
    handshake.cpp and input_buffer& operator>> in yassl_imp.cpp
  * SECURITY UPDATE: buffer overread in HASHwithTransform::Update in hash.cpp
  * debian/patches/95_SECURITY_CVE-2008-0226_0227.dpatch: properly verify
    length of input (LP: #186978)
  * SECURITY UPDATE: privilege escalation via crafted CREATE SQL SECURITY
    DEFINER VIEW and ALTER VIEW statements
  * debian/patches/96_SECURITY_CVE-2007-6303.dpatch: make sure lex->definer
    is non-NULL in sql_view.cc (LP: #185039)
  * debian/patches/97_view_fix-now.dpatch: update view.test and view.result to
    use a static year instead of now(). These tests are not part of the build
    but helps with qa-regression-testing
  * References
    CVE-2008-0226
    CVE-2008-0227
    CVE-2007-6303

 -- Jamie Strandboge <email address hidden>   Wed, 19 Mar 2008 15:18:09 -0400

Upload details

Uploaded by:
Jamie Strandboge on 2008-03-20
Uploaded to:
Gutsy
Original maintainer:
Ubuntu Development Team
Component:
main
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size MD5 Checksum
mysql-dfsg-5.0_5.0.45.orig.tar.gz 17.0 MiB ab450aa2e9b89f3b4e01fd12375b1bee
mysql-dfsg-5.0_5.0.45-1ubuntu3.3.diff.gz 229.6 KiB 6dc6f508f3075b440f5a503339e3902c
mysql-dfsg-5.0_5.0.45-1ubuntu3.3.dsc 1.3 KiB 356792b5d95ea3741a3e8b7d50f01d99

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu gutsy.

No description available for libmysqlclient15-dev in ubuntu gutsy.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu gutsy.

No description available for libmysqlclient15off in ubuntu gutsy.

mysql-client: No summary available for mysql-client in ubuntu gutsy.

No description available for mysql-client in ubuntu gutsy.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu gutsy.

No description available for mysql-client-5.0 in ubuntu gutsy.

mysql-common: No summary available for mysql-common in ubuntu gutsy.

No description available for mysql-common in ubuntu gutsy.

mysql-server: No summary available for mysql-server in ubuntu gutsy.

No description available for mysql-server in ubuntu gutsy.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu gutsy.

No description available for mysql-server-5.0 in ubuntu gutsy.