Branches for Warty

Name Status Last Modified Last Commit
lp://staging/ubuntu/warty/mysql-dfsg 1 Development 2009-09-29 02:03:17 UTC
2. * security update: fixed a security f...

Author: Martin Pitt
Revision Date: 2004-09-14 11:10:56 UTC

* security update: fixed a security flaw in mysqlhotcopy which created
  temporary files in /tmp which had predictable filenames and such could be
  used for a tempfile run attack. Ported the change from version 4.0.20-11.
  (Warty bug #1198)
  References: CAN-2004-0457
* the patched mysqlhotcopy.sh from 4.0.20-11 and up breaks mysqlhotcopy.sh
  entirely (it does not even compile yet); made it work again and submitted
  patch to Debian (see http://bugs.debian.org/271632)

lp://staging/ubuntu/warty-security/mysql-dfsg 1 Development 2009-07-20 08:34:55 UTC
4. * SECURITY UPDATE: Logging bypass. * ...

Author: Martin Pitt
Revision Date: 2006-04-27 10:37:57 UTC

* SECURITY UPDATE: Logging bypass.
* Add and apply debian/patches/ignore_null_characters.patch:
  - Filter out NUL characters from commands since they terminate command
    logging.
  - Patch ported from 5.0 branch: http://lists.mysql.com/commits/4337 (test
    suite patch skipped since the test suite looks completely different in
    4.0).
* References:
  CVE-2006-0903
  http://bugs.mysql.com/bug.php?id=17667

12 of 2 results