mysql-dfsg-5.1 5.1.37-1ubuntu5.1 source package in Ubuntu

Changelog

mysql-dfsg-5.1 (5.1.37-1ubuntu5.1) karmic-security; urgency=low

  * SECURITY UPDATE: denial of service via certain SELECT statements with
    subqueries and statements that use the GeomFromWKB function
    - debian/patches/51_CVE-2009-4019.dpatch: return proper errors in
      sql/sql_class.cc, handle errors in sql/sql_select.cc, set correct
      null_value in sql/item_geofunc.cc, add tests to mysql-test/*.
    - CVE-2009-4019
  * SECURITY UPDATE: privilege restriction bypass via incorrect calculation
    of the mysql_unpacked_real_data_home value
    - debian/patches/52_CVE-2009-4030.dpatch: fix initialization order in
      sql/mysqld.cc.
    - CVE-2009-4030
  * SECURITY UPDATE: arbitrary code execution via yassl stack overflow
    - debian/patches/53_CVE-2009-4484.dpatch: validate lengths in
      extra/yassl/taocrypt/src/asn.*.
    - CVE-2009-4484
  * SECURITY UPDATE: access restriction bypass via symlink
    - debian/patches/54_CVE-2008-7247.dpatch: improve symlink handling in
      sql/sql_table.cc.
    - CVE-2008-7247
  * debian/patches/55_ssl_test_certs.dpatch: update certificates in the
    test suite as they are expired. The new certs expire 2015-01-28.
 -- Marc Deslauriers <email address hidden>   Sun, 07 Feb 2010 23:32:37 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Karmic
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
misc
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mysql-dfsg-5.1_5.1.37.orig.tar.gz 17.0 MiB 3da7b362c2259cd93ee30794343b15e4f5e765cae578f528501469e5beaa35d6
mysql-dfsg-5.1_5.1.37-1ubuntu5.1.diff.gz 316.4 KiB ad8660c4d10a5b7ce5d8c0ba15fe34df7b30f23b8aaa57ff0fe57671ca17dcd7
mysql-dfsg-5.1_5.1.37-1ubuntu5.1.dsc 1.8 KiB 1c71f6619c14c43188d774884e6ac352128d663ee6fdcedc916bc3d5f5d993e0

View changes file

Binary packages built by this source

libmysqlclient-dev: No summary available for libmysqlclient-dev in ubuntu karmic.

No description available for libmysqlclient-dev in ubuntu karmic.

libmysqlclient16: No summary available for libmysqlclient16 in ubuntu karmic.

No description available for libmysqlclient16 in ubuntu karmic.

libmysqlclient16-dev: No summary available for libmysqlclient16-dev in ubuntu karmic.

No description available for libmysqlclient16-dev in ubuntu karmic.

libmysqld-dev: No summary available for libmysqld-dev in ubuntu karmic.

No description available for libmysqld-dev in ubuntu karmic.

libmysqld-pic: No summary available for libmysqld-pic in ubuntu karmic.

No description available for libmysqld-pic in ubuntu karmic.

mysql-client: No summary available for mysql-client in ubuntu karmic.

No description available for mysql-client in ubuntu karmic.

mysql-client-5.1: No summary available for mysql-client-5.1 in ubuntu karmic.

No description available for mysql-client-5.1 in ubuntu karmic.

mysql-common: No summary available for mysql-common in ubuntu karmic.

No description available for mysql-common in ubuntu karmic.

mysql-server: No summary available for mysql-server in ubuntu karmic.

No description available for mysql-server in ubuntu karmic.

mysql-server-5.1: No summary available for mysql-server-5.1 in ubuntu karmic.

No description available for mysql-server-5.1 in ubuntu karmic.

mysql-server-core-5.1: No summary available for mysql-server-core-5.1 in ubuntu karmic.

No description available for mysql-server-core-5.1 in ubuntu karmic.