-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 12 Feb 2010 00:05:23 +0100 Source: mysql-dfsg-5.0 Binary: libmysqlclient15-dev mysql-client mysql-client-5.0 mysql-server mysql-server-4.1 mysql-server-5.0 mysql-common libmysqlclient15off Architecture: source all i386 Version: 5.0.32-7etch12 Distribution: oldstable-security Urgency: high Maintainer: Christian Hammers <ch@debian.org> Changed-By: Giuseppe Iuculano <iuculano@debian.org> Description: libmysqlclient15-dev - mysql database development files libmysqlclient15off - mysql database client library mysql-client - mysql database client (meta package depending on the latest versi mysql-client-5.0 - mysql database client binaries mysql-common - mysql database common files (e.g. /etc/mysql/my.cnf) mysql-server - mysql database server (meta package depending on the latest versi mysql-server-4.1 - mysql database server (transitional package) mysql-server-5.0 - mysql database server binaries Changes: mysql-dfsg-5.0 (5.0.32-7etch12) oldstable-security; urgency=high . * Non-maintainer upload by the Security Team. * Backport upstream fix for CVE-2009-4019: does not properly handle errors during execution of certain SELECT statements with subqueries, and does not preserve certain null_value flags during execution of statements that use the GeomFromWKB function. * Backport upstream fix for CVE-2009-4030: bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified DATA DIRECTORY or INDEX DIRECTORY arguments that are originally associated with pathnames without symlinks, and that can point to tables created at a future time at which a pathname is modified to contain a symlink to a subdirectory of the MySQL data home directory. * Backport upstream fix for CVE-2009-4484: Multiple stack-based buffer overflows in the CertDecoder::GetName function in yaSSL Files: 4887f5693757fbbc2584e86ab5e91bf3 1128 misc optional mysql-dfsg-5.0_5.0.32-7etch12.dsc 3d1c00f7b70032c11803fa391bee026a 315292 misc optional mysql-dfsg-5.0_5.0.32-7etch12.diff.gz 6f34fbec1b8e451172ebd24f80439a9e 55892 misc optional mysql-common_5.0.32-7etch12_all.deb f937a118691e4325dac3a5a8e98eeb50 48912 misc optional mysql-server_5.0.32-7etch12_all.deb daa1649e464ebdbbd54170fb571782ea 46842 misc optional mysql-client_5.0.32-7etch12_all.deb 545b9a1f38f32aabacec4a5269e0aef4 1795330 libs optional libmysqlclient15off_5.0.32-7etch12_i386.deb 97d2e827f13ed9d35fce8467ca2b9efa 6976660 libdevel optional libmysqlclient15-dev_5.0.32-7etch12_i386.deb 1755e4d988b95b31afdac22af89b8336 7193656 misc optional mysql-client-5.0_5.0.32-7etch12_i386.deb 03d2005576588e2c02274fcffe42d955 25359554 misc optional mysql-server-5.0_5.0.32-7etch12_i386.deb 6f8c556248dfb80e251bb4985b266a8a 48944 oldlibs extra mysql-server-4.1_5.0.32-7etch12_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAkt1ZukACgkQNxpp46476aokCQCgiWEba3yMmz7jTa+oHvDAs5sG n0AAoIS/acttQrNzni022oJjWyZMogL+ =UT3g -----END PGP SIGNATURE----- Accepted: libmysqlclient15-dev_5.0.32-7etch12_i386.deb to main/m/mysql-dfsg-5.0/libmysqlclient15-dev_5.0.32-7etch12_i386.deb libmysqlclient15off_5.0.32-7etch12_i386.deb to main/m/mysql-dfsg-5.0/libmysqlclient15off_5.0.32-7etch12_i386.deb mysql-client-5.0_5.0.32-7etch12_i386.deb to main/m/mysql-dfsg-5.0/mysql-client-5.0_5.0.32-7etch12_i386.deb mysql-client_5.0.32-7etch12_all.deb to main/m/mysql-dfsg-5.0/mysql-client_5.0.32-7etch12_all.deb mysql-common_5.0.32-7etch12_all.deb to main/m/mysql-dfsg-5.0/mysql-common_5.0.32-7etch12_all.deb mysql-dfsg-5.0_5.0.32-7etch12.diff.gz to main/m/mysql-dfsg-5.0/mysql-dfsg-5.0_5.0.32-7etch12.diff.gz mysql-dfsg-5.0_5.0.32-7etch12.dsc to main/m/mysql-dfsg-5.0/mysql-dfsg-5.0_5.0.32-7etch12.dsc mysql-server-4.1_5.0.32-7etch12_i386.deb to main/m/mysql-dfsg-5.0/mysql-server-4.1_5.0.32-7etch12_i386.deb mysql-server-5.0_5.0.32-7etch12_i386.deb to main/m/mysql-dfsg-5.0/mysql-server-5.0_5.0.32-7etch12_i386.deb mysql-server_5.0.32-7etch12_all.deb to main/m/mysql-dfsg-5.0/mysql-server_5.0.32-7etch12_all.deb