-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 6 Jul 2008 07:59:50 +0000 Source: mysql-dfsg-5.0 Binary: libmysqlclient15-dev mysql-client mysql-client-5.0 mysql-server mysql-server-4.1 mysql-server-5.0 mysql-common libmysqlclient15off Architecture: source all amd64 Version: 5.0.32-7etch6 Distribution: stable-security Urgency: high Maintainer: Christian Hammers <ch@debian.org> Changed-By: Devin Carraway <devin@debian.org> Description: libmysqlclient15-dev - mysql database development files libmysqlclient15off - mysql database client library mysql-client - mysql database client (meta package depending on the latest versi mysql-client-5.0 - mysql database client binaries mysql-common - mysql database common files (e.g. /etc/mysql/my.cnf) mysql-server - mysql database server (meta package depending on the latest versi mysql-server-4.1 - mysql database server (transitional package) mysql-server-5.0 - mysql database server binaries Changes: mysql-dfsg-5.0 (5.0.32-7etch6) stable-security; urgency=high . * Non-maintainer upload by the security team. * Backport a corrected form of upstream's fix for CVE-2008-2079, which allowed local users to bypass authorization checks by creating MyISAM tables using specific DATA DIRECTORY or INDEX DIRECTORY arguments within the MySQL data directory subsequently used by tables in other databases to which they would not normally have access. Note that this alters the behavior of table creation in that it disallows specification of data or index directories in or under mysqld's own homedir. * Adjust 95_SECURITY_CVE-2007-3781.dpatch, introduced in 5.0.32-7etch4, so as not to drop a spurious rejected patch file during the build. Files: 367176f5e877cf3c46c662b87275f901 1117 misc optional mysql-dfsg-5.0_5.0.32-7etch6.dsc 42faf9d31d5bf1674d5b241ff49341cf 266482 misc optional mysql-dfsg-5.0_5.0.32-7etch6.diff.gz 72f5ee84fa60b0871600fbe5fd4f5a74 54220 misc optional mysql-common_5.0.32-7etch6_all.deb e8a2d9a5f13043c67a3d9ba4caa57a3c 47968 misc optional mysql-server_5.0.32-7etch6_all.deb 48a61918f72d865970ef48bc4eeb3466 45888 misc optional mysql-client_5.0.32-7etch6_all.deb 6cc454236571032d4c723a4084cae535 1830958 libs optional libmysqlclient15off_5.0.32-7etch6_amd64.deb 0fd9eb3504a9958b1f709a48649b41c0 7371044 libdevel optional libmysqlclient15-dev_5.0.32-7etch6_amd64.deb ce08e3855077d14ddf73d70362faaaf1 7548576 misc optional mysql-client-5.0_5.0.32-7etch6_amd64.deb 3fd278cba985110a578fc8d5bc76f8e9 25815708 misc optional mysql-server-5.0_5.0.32-7etch6_amd64.deb 3662d9f51257c5fc57e7a20b90a6f33d 47990 oldlibs extra mysql-server-4.1_5.0.32-7etch6_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFIcVDLU5XKDemr/NIRAr5NAKCrX6Z3/NufEpa/dJKyxjba1KCr/ACg8k91 5G+uqD+tIOpV7p88RmTuY8s= =BR/a -----END PGP SIGNATURE----- Accepted: libmysqlclient15-dev_5.0.32-7etch6_amd64.deb to pool/main/m/mysql-dfsg-5.0/libmysqlclient15-dev_5.0.32-7etch6_amd64.deb libmysqlclient15off_5.0.32-7etch6_amd64.deb to pool/main/m/mysql-dfsg-5.0/libmysqlclient15off_5.0.32-7etch6_amd64.deb mysql-client-5.0_5.0.32-7etch6_amd64.deb to pool/main/m/mysql-dfsg-5.0/mysql-client-5.0_5.0.32-7etch6_amd64.deb mysql-client_5.0.32-7etch6_all.deb to pool/main/m/mysql-dfsg-5.0/mysql-client_5.0.32-7etch6_all.deb mysql-common_5.0.32-7etch6_all.deb to pool/main/m/mysql-dfsg-5.0/mysql-common_5.0.32-7etch6_all.deb mysql-dfsg-5.0_5.0.32-7etch6.diff.gz to pool/main/m/mysql-dfsg-5.0/mysql-dfsg-5.0_5.0.32-7etch6.diff.gz mysql-dfsg-5.0_5.0.32-7etch6.dsc to pool/main/m/mysql-dfsg-5.0/mysql-dfsg-5.0_5.0.32-7etch6.dsc mysql-server-4.1_5.0.32-7etch6_amd64.deb to pool/main/m/mysql-dfsg-5.0/mysql-server-4.1_5.0.32-7etch6_amd64.deb mysql-server-5.0_5.0.32-7etch6_amd64.deb to pool/main/m/mysql-dfsg-5.0/mysql-server-5.0_5.0.32-7etch6_amd64.deb mysql-server_5.0.32-7etch6_all.deb to pool/main/m/mysql-dfsg-5.0/mysql-server_5.0.32-7etch6_all.deb