[Pkg-mysql-commits] r1054 - branches/sid-5.0/debian

Norbert Tretkowski nobse at alioth.debian.org
Sun Dec 9 11:42:43 UTC 2007


tags 455010 pending
thanks

Author: nobse
Date: 2007-12-09 11:42:43 +0000 (Sun, 09 Dec 2007)
New Revision: 1054

Modified:
   branches/sid-5.0/debian/changelog
Log:
Merge fix for CVE-2007-5969 from 5.0.45-4

Modified: branches/sid-5.0/debian/changelog
===================================================================
--- branches/sid-5.0/debian/changelog	2007-12-07 09:29:37 UTC (rev 1053)
+++ branches/sid-5.0/debian/changelog	2007-12-09 11:42:43 UTC (rev 1054)
@@ -24,6 +24,16 @@
 
  -- Norbert Tretkowski <nobse at debian.org>  Fri, 07 Dec 2007 10:14:16 +0100
 
+mysql-dfsg-5.0 (5.0.45-4) unstable; urgency=high
+
+  * SECURITY:
+    Fix for CVE-2007-5969: Using RENAME TABLE against a table with explicit
+    DATA DIRECTORY and INDEX DIRECTORY options can be used to overwrite system
+    table information by replacing the file to which the symlink points.
+    (closes: #455010)
+
+ -- Norbert Tretkowski <nobse at debian.org>  Sun, 09 Dec 2007 12:29:54 +0100
+
 mysql-dfsg-5.0 (5.0.45-3) unstable; urgency=high
 
   * SECURITY:




More information about the Pkg-mysql-commits mailing list