[Bug 1203828] Re: mysql 5.5.32, 5.1.70 security update tracking bug

Launchpad Bug Tracker 1203828 at bugs.launchpad.net
Thu Jul 25 14:33:12 UTC 2013


This bug was fixed in the package mysql-dfsg-5.1 -
5.1.70-0ubuntu0.10.04.1

---------------
mysql-dfsg-5.1 (5.1.70-0ubuntu0.10.04.1) lucid-security; urgency=low

  * SECURITY UPDATE: Update to 5.1.70 to fix security issues (LP: #1203828)
    - http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
    - CVE-2013-1861
    - CVE-2013-3802
    - CVE-2013-3804
  * SECURITY UPDATE: insecure creation of debian.cnf file
    - debian/mysql-server-5.1.postinst: set umask to 066 before creating
      debian.cnf.
    - CVE-2013-2162
 -- Marc Deslauriers <marc.deslauriers at ubuntu.com>   Mon, 22 Jul 2013 15:07:29 -0400

** Changed in: mysql-dfsg-5.1 (Ubuntu Lucid)
       Status: Confirmed => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-1861

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-2162

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3802

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3804

** Changed in: mysql-5.5 (Ubuntu Precise)
       Status: Confirmed => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3783

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3793

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3809

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-3812

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to mysql-dfsg-5.1 in Ubuntu.
https://bugs.launchpad.net/bugs/1203828

Title:
  mysql 5.5.32, 5.1.70 security update tracking bug

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/mysql-5.5/+bug/1203828/+subscriptions



More information about the Ubuntu-server-bugs mailing list