Accepted: mysql-dfsg-5.0, mysql-dfsg-5.0, mysql-dfsg-5.0, mysql-dfsg-5.0, mysql-dfsg-5.0, mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_amd64_translations.tar.gz, mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_i386_translations.tar.gz, mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_powerpc_translations.tar.gz, mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_sparc_translations.tar.gz 5.0.24a-9ubuntu2.4 (source, amd64, i386, powerpc, sparc, raw-translations, raw-translations, raw-translations, raw-translations)

Ubuntu Installer archive at ubuntu.com
Thu Mar 20 10:56:17 GMT 2008


Accepted:
 OK: mysql-dfsg-5.0_5.0.24a.orig.tar.gz
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4.diff.gz
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4.dsc
     -> Component: main Section: misc
 OK: libmysqlclient15-dev_5.0.24a-9ubuntu2.4_amd64.deb
 OK: libmysqlclient15off_5.0.24a-9ubuntu2.4_amd64.deb
 OK: mysql-client-5.0_5.0.24a-9ubuntu2.4_amd64.deb
 OK: mysql-server-5.0_5.0.24a-9ubuntu2.4_amd64.deb
 OK: libmysqlclient15-dev_5.0.24a-9ubuntu2.4_i386.deb
 OK: libmysqlclient15off_5.0.24a-9ubuntu2.4_i386.deb
 OK: mysql-client_5.0.24a-9ubuntu2.4_all.deb
 OK: mysql-client-5.0_5.0.24a-9ubuntu2.4_i386.deb
 OK: mysql-common_5.0.24a-9ubuntu2.4_all.deb
 OK: mysql-server_5.0.24a-9ubuntu2.4_all.deb
 OK: mysql-server-5.0_5.0.24a-9ubuntu2.4_i386.deb
 OK: libmysqlclient15-dev_5.0.24a-9ubuntu2.4_powerpc.deb
 OK: libmysqlclient15off_5.0.24a-9ubuntu2.4_powerpc.deb
 OK: mysql-client-5.0_5.0.24a-9ubuntu2.4_powerpc.deb
 OK: mysql-server-5.0_5.0.24a-9ubuntu2.4_powerpc.deb
 OK: libmysqlclient15-dev_5.0.24a-9ubuntu2.4_sparc.deb
 OK: libmysqlclient15off_5.0.24a-9ubuntu2.4_sparc.deb
 OK: mysql-client-5.0_5.0.24a-9ubuntu2.4_sparc.deb
 OK: mysql-server-5.0_5.0.24a-9ubuntu2.4_sparc.deb
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_amd64_translations.tar.gz
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_i386_translations.tar.gz
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_powerpc_translations.tar.gz
 OK: mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_sparc_translations.tar.gz

Format: 1.7
Date: Wed, 19 Mar 2008 15:15:59 -0400
Source: mysql-dfsg-5.0
Binary: libmysqlclient15-dev libmysqlclient15off mysql-client mysql-client-5.0 mysql-common mysql-server mysql-server-5.0
Architecture: amd64_translations amd64 i386_translations all i386 powerpc_translations powerpc source sparc_translations sparc
Version: 5.0.24a-9ubuntu2.4
Distribution: edgy-security
Urgency: low
Maintainer: Christian Hammers <ch at debian.org>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
 libmysqlclient15-dev - mysql database development files
 libmysqlclient15off - mysql database client library
 mysql-client-5.0 - mysql database client binaries
 mysql-server-5.0 - mysql database server binaries
 mysql-client - mysql database client (current version)
 mysql-common - mysql database common files (e.g. /etc/mysql/my.cnf)
 mysql-server - mysql database server (current version)
Changes:
 mysql-dfsg-5.0 (5.0.24a-9ubuntu2.4) edgy-security; urgency=low
 .
   * no change build for -security upload
 .
 mysql-dfsg-5.0 (5.0.24a-9ubuntu2.3) edgy-proposed; urgency=low
 .
   * SECURITY UPDATE: buffer overflow via ProcessOldClientHello() in
     handshake.cpp and input_buffer& operator>> in yassl_imp.cpp
   * SECURITY UPDATE: buffer overread in HASHwithTransform::Update in hash.cpp
   * debian/patches/99_SECURITY_CVE-2008-0226_0227.dpatch: properly verify
     length of input (LP: #186978).
   * SECURITY UPDATE: privilege escalation via crafted CREATE SQL SECURITY
     DEFINER VIEW and ALTER VIEW statements
   * debian/patches/100_SECURITY_CVE-2007-6303.dpatch: make sure lex->definer
     is non-NULL in sql_view.cc (LP: #185039). This patch also fixes upstream
     bug #21080, which was needed to keep VIEW definitions in sync.
   * SECURITY UPDATE: denial of service via crafted EXPLAIN SELECT FROM on the
     INFORMATION_SCHEMA table
   * debian/patches/101_SECURITY_CVE-2006-7232.dpatch: make sure
     thd->lex-describe is non-NULL in sql_select.cc (LP: #161127)
   * debian/patches/102_view_fix-now.dpatch: update view.test and view.result to
     use a static year instead of now(). These tests are not part of the build
     but helps with qa-regression-testing
   * SECURITY UPDATE: privilege escalation via SQL SECURITY INVOKER stored
     routines
   * debian/patches/103_SECURITY_CVE-2007-2692.dpatch: restore THD::db_access
     when returning from stored routine by performing privilege checks in the
     execution stage rather than the parsing stage.
   * References
     CVE-2008-0226
     CVE-2008-0227
     CVE-2007-6303
     CVE-2006-7232
     CVE-2007-2692
     http://bugs.mysql.com/bug.php?id=27337
     http://bugs.mysql.com/bug.php?id=21080
Files:
 c36a2c8ed16e635d2eea6d7662425608 1816194 libs optional libmysqlclient15off_5.0.24a-9ubuntu2.4_amd64.deb
 f55453f4e85908a1d6b9d1109357de9c 7295672 libdevel optional libmysqlclient15-dev_5.0.24a-9ubuntu2.4_amd64.deb
 5a2d0c15059211cce1de4e0f82392385 7435818 misc optional mysql-client-5.0_5.0.24a-9ubuntu2.4_amd64.deb
 7e60c1fb835bff6750b730beab5e75cd 25708420 misc optional mysql-server-5.0_5.0.24a-9ubuntu2.4_amd64.deb
 bc77d9180628e1221d001ad260ad1a1b 21833 raw-translations - mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_amd64_translations.tar.gz
 d20b07d3608ca9b83cb9885cff2775ad 43580 misc optional mysql-common_5.0.24a-9ubuntu2.4_all.deb
 aa706899b66b8cc512c7c8d9548136cd 40960 misc optional mysql-server_5.0.24a-9ubuntu2.4_all.deb
 31e72c9bb79de38033876bd00816ab79 40954 misc optional mysql-client_5.0.24a-9ubuntu2.4_all.deb
 a10763b2805445ded6e11d4f842e14f2 1761640 libs optional libmysqlclient15off_5.0.24a-9ubuntu2.4_i386.deb
 423f1d427afc779d1f8bdbd68e6aec27 6815064 libdevel optional libmysqlclient15-dev_5.0.24a-9ubuntu2.4_i386.deb
 560faad80017ed7295f9ef067d870665 6959522 misc optional mysql-client-5.0_5.0.24a-9ubuntu2.4_i386.deb
 2c545d64eca0d0c4e5ac7d50c5d252c5 24940426 misc optional mysql-server-5.0_5.0.24a-9ubuntu2.4_i386.deb
 f48eb50925827e9699afb56562c82fb0 21836 raw-translations - mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_i386_translations.tar.gz
 c6058676b8d5a36a1df0a89a10be3b0d 1811112 libs optional libmysqlclient15off_5.0.24a-9ubuntu2.4_powerpc.deb
 41c8fede4157bbcba9b06f5291a4b4c0 7437556 libdevel optional libmysqlclient15-dev_5.0.24a-9ubuntu2.4_powerpc.deb
 e7a3832e99c6e648447ac40638271b09 7473578 misc optional mysql-client-5.0_5.0.24a-9ubuntu2.4_powerpc.deb
 1b947da25218b31ead7618de7777ff47 26074650 misc optional mysql-server-5.0_5.0.24a-9ubuntu2.4_powerpc.deb
 70eabd5bd44d4808ec0a27ebbf29118d 21840 raw-translations - mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_powerpc_translations.tar.gz
 c8e843e37f3e922c1b86ae97ea3bfc54 1110 misc optional mysql-dfsg-5.0_5.0.24a-9ubuntu2.4.dsc
 ab96448b7abcb125d8d5ebebe42907ea 154689 misc optional mysql-dfsg-5.0_5.0.24a-9ubuntu2.4.diff.gz
 4373bafcd1db25119ebae23dd1666997 1772706 libs optional libmysqlclient15off_5.0.24a-9ubuntu2.4_sparc.deb
 062ea54ee53ef2a1fdcef4298763b2d4 6944396 libdevel optional libmysqlclient15-dev_5.0.24a-9ubuntu2.4_sparc.deb
 4a79d720b205161bb74423ec873cb3a2 7049716 misc optional mysql-client-5.0_5.0.24a-9ubuntu2.4_sparc.deb
 d31b97ccbb2890424fac9b312ed8d426 25305896 misc optional mysql-server-5.0_5.0.24a-9ubuntu2.4_sparc.deb
 9d628eee77efebb5b56e68d72044ddb1 21838 raw-translations - mysql-dfsg-5.0_5.0.24a-9ubuntu2.4_sparc_translations.tar.gz





More information about the edgy-changes mailing list