Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· OCZ Vertex 450 SSD Reviews and more
· Proxmox VE 3.0 released
· More Windows 8.1 features discovered in WinRT?
· New Colors Rumored for iPhone 5S and Lower-Cost iPhone, Dual LED Flash for iPhone 5S?
· NVIDIA GeForce 320.18 WHQL Drivers
· 20 Debian Updates
· OCZ Vertex 450 Series Solid State Drives announced
· NVIDIA GeForce GTX 780 Reviews Roundup
· Apple's 'iWatch' to come in late 2014 with focus on biometrics, analyst says
· Windows 8.1 laptops with AMDs new chips to support wireless display

Upcoming News
· Wine release 1.5.31
· NVIDIA GeForce Chips Comparison Table @ Hardware Secrets
· Resident Evil Revelations Video Review with Kaeyi Dream @ HardwareHeaven.com
· [security-announce] openSUSE-SU-2013:0825-1: important: MozillaFirefox: update to version 21.0
· [security-announce] SUSE-SU-2013:0819-2: critical: Security update for Linux kernel
· Fractal Design Node 605 Silent HTPC Case Review @ Legit Reviews
· SevenTeam X6 Power Bank Review (smartphones/tablets)
· Case Mod Friday: Smokey Green Giant @ ThinkComputers.org
· The Best Activity Trackers for Fitness @ TechReviewSource.com
· EagleTech ET-NP100K Neptor 10,000mAh External Battery Pack Review @ TestFreaks

Linux Compatibility
· Dell Dimension 9100
· CL-CAM50001 UPC=3700284609322
· DFE 520 TX
· nVidia GeForce4 MX 440
· Gore: Ultimate Soldier
· SMC2802W V2 wi-fi 54Mbps PCI card
· Wireless modem router N300
· Dell P780
· ASUS A7V8X
· BricsCAD for Linux

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6488 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 711 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4598 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 786 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1171 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » January 2005 » USN-63-1: MySQL client vulnerability

USN-63-1: MySQL client vulnerability

Posted by Philipp Esselbach on: 01/19/2005 02:05 AM [ Print | 0 comment(s) ]

A MySQL security update is available for Ubuntu Linux 4.10

===========================================================
Ubuntu Security Notice USN-63-1 January 18, 2005
mysql-dfsg vulnerability
CAN-2005-0004
===========================================================

A security issue affects the following Ubuntu releases:

Ubuntu 4.10 (Warty Warthog)

The following packages are affected:

mysql-client

The problem can be corrected by upgrading the affected package to version 4.0.20-2ubuntu1.2. In general, a standard system upgrade is sufficient to effect the necessary changes.




Details follow:

Javier Fernandez-Sanguino Pea noticed that the "mysqlaccess" program created temporary files in an insecure manner. This could allow a symbolic link attack to create or overwrite arbitrary files with the privileges of the user invoking the program.

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-dfsg_4.0
.20-2ubuntu1.2.diff.gz
Size/MD5: 166762 9539079855c393735822c2a81066fc4f
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-dfsg_4.0
.20-2ubuntu1.2.dsc
Size/MD5: 892 ffefecd7367ae204441e9c578ef99c80
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-dfsg_4.0
.20.orig.tar.gz
Size/MD5: 9760117 f092867f6df2f50b34b8065312b9fb2b

Architecture independent packages:

http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-common_4
.0.20-2ubuntu1.2_all.deb
Size/MD5: 24118 f4dc709c79ba5d369897ff900c902d71

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
-dev_4.0.20-2ubuntu1.2_amd64.deb
Size/MD5: 2809872 a55c0f636b25edd5d13c0d803338488d
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
12_4.0.20-2ubuntu1.2_amd64.deb
Size/MD5: 304142 b86111022aa1c15af7f7f3036f5433be
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-client_4
.0.20-2ubuntu1.2_amd64.deb
Size/MD5: 422204 f9bc9eb8cd9ac67e52eaa524e57bac99
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-server_4
.0.20-2ubuntu1.2_amd64.deb
Size/MD5: 3576784 d53773fbd06bb053f0a46e529aa38eee

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
-dev_4.0.20-2ubuntu1.2_i386.deb
Size/MD5: 2773210 a6852a3f424271259b39bb03bb461b04
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
12_4.0.20-2ubuntu1.2_i386.deb
Size/MD5: 287134 a21f225c8fa3330a43927745011c205f
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-client_4
.0.20-2ubuntu1.2_i386.deb
Size/MD5: 396138 0c2b5af3861525c81f2ff1ff220ecec9
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-server_4
.0.20-2ubuntu1.2_i386.deb
Size/MD5: 3485736 1604893d7116f1a157bd21ba1691cf10

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
-dev_4.0.20-2ubuntu1.2_powerpc.deb
Size/MD5: 3109196 55cfe8be306fcf4b52b28dcd71b5f248
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/libmysqlclient
12_4.0.20-2ubuntu1.2_powerpc.deb
Size/MD5: 307810 214c3513201913fe536530c9635a260e
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-client_4
.0.20-2ubuntu1.2_powerpc.deb
Size/MD5: 451622 990dc682f047b6f90ada50cbaa68bd99
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg/mysql-server_4
.0.20-2ubuntu1.2_powerpc.deb
Size/MD5: 3769240 007381b48ea3e942fd46d91321422673


Bookmark and Share

« USN-61-1: vim vulnerabilities · iRiver H320 MP3 Player Review »

Linux Compatible » News » January 2005 » USN-63-1: MySQL client vulnerability
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition