mysql-dfsg-5.0 5.1.30really5.0.75-0ubuntu10.3 source package in Ubuntu

Changelog

mysql-dfsg-5.0 (5.1.30really5.0.75-0ubuntu10.3) jaunty-security; urgency=low

  * SECURITY UPDATE: Cross-site scripting in the command-line client
    - debian/patches/93_CVE-2008-4456.dpatch: use xmlencode_print in
      client/mysql.cc, add test to mysql-test/*.
    - CVE-2008-4456
  * SECURITY UPDATE: format string vulnerabilities in the dispatch_command
    function
    - debian/patches/94_CVE-2009-2446.dpatch: use correct format string in
      sql/sql_parse.cc, add test to tests/mysql_client_test.c.
    - CVE-2009-2446
  * SECURITY UPDATE: denial of service via certain SELECT statements with
    subqueries and statements that use the GeomFromWKB function
    - debian/patches/95_CVE-2009-4019.dpatch: return proper errors in
      sql/sql_class.cc, handle errors in sql/sql_select.cc, set correct
      null_value in sql/item_geofunc.cc, add tests to mysql-test/*.
    - CVE-2009-4019
  * SECURITY UPDATE: privilege restriction bypass via incorrect calculation
    of the mysql_unpacked_real_data_home value
    - debian/patches/96_CVE-2009-4030.dpatch: fix initialization order in
      sql/mysqld.cc.
    - CVE-2009-4030
  * SECURITY UPDATE: arbitrary code execution via yassl stack overflow
    - debian/patches/97_CVE-2009-4484.dpatch: validate lengths in
      extra/yassl/taocrypt/src/asn.*.
    - CVE-2009-4484
  * debian/patches/92_ssl_test_cert.dpatch: disabled patch as certs are now
    expired.
  * debian/patches/98_ssl_test_certs.dpatch: update certificates in the
    test suite as they are expired. The new certs expire 2015-01-28.
 -- Marc Deslauriers <email address hidden>   Mon, 08 Feb 2010 08:50:16 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Jaunty
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.0_5.1.30really5.0.75.orig.tar.gz 17.4 MiB d0afa573e9cbae3146dff7427ca3894884d25a4da96dd902b522c3dfdac28a5b
mysql-dfsg-5.0_5.1.30really5.0.75-0ubuntu10.3.diff.gz 343.9 KiB 3a7d8d06c3fa573117cac68cbdbc8655aa8b6080972bf76b86e07a691d31549d
mysql-dfsg-5.0_5.1.30really5.0.75-0ubuntu10.3.dsc 1.9 KiB 80551bdbd7206c346e275fb025f8086cf98f75583ebf0c679df262d5ffa869e7

View changes file

Binary packages built by this source

libmysqlclient15-dev: No summary available for libmysqlclient15-dev in ubuntu jaunty.

No description available for libmysqlclient15-dev in ubuntu jaunty.

libmysqlclient15off: No summary available for libmysqlclient15off in ubuntu jaunty.

No description available for libmysqlclient15off in ubuntu jaunty.

mysql-client: No summary available for mysql-client in ubuntu jaunty.

No description available for mysql-client in ubuntu jaunty.

mysql-client-5.0: No summary available for mysql-client-5.0 in ubuntu jaunty.

No description available for mysql-client-5.0 in ubuntu jaunty.

mysql-common: No summary available for mysql-common in ubuntu jaunty.

No description available for mysql-common in ubuntu jaunty.

mysql-server: No summary available for mysql-server in ubuntu jaunty.

No description available for mysql-server in ubuntu jaunty.

mysql-server-5.0: No summary available for mysql-server-5.0 in ubuntu jaunty.

No description available for mysql-server-5.0 in ubuntu jaunty.

mysql-server-core-5.0: No summary available for mysql-server-core-5.0 in ubuntu jaunty.

No description available for mysql-server-core-5.0 in ubuntu jaunty.