-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 29 Dec 2010 18:11:12 +0100 Source: mysql-dfsg-5.0 Binary: libmysqlclient15off libmysqlclient15-dev mysql-common mysql-client-5.0 mysql-server-5.0 mysql-server mysql-client Architecture: source all amd64 Version: 5.0.51a-24+lenny5 Distribution: stable-security Urgency: high Maintainer: Debian MySQL Maintainers Changed-By: Giuseppe Iuculano Description: libmysqlclient15-dev - MySQL database development files libmysqlclient15off - MySQL database client library mysql-client - MySQL database client (metapackage depending on the latest versio mysql-client-5.0 - MySQL database client binaries mysql-common - MySQL database common files mysql-server - MySQL database server (metapackage depending on the latest versio mysql-server-5.0 - MySQL database server binaries Changes: mysql-dfsg-5.0 (5.0.51a-24+lenny5) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fixed CVE-2010-3677: Incorrect handling of NULL arguments could lead to a crash. * Fixed CVE-2010-3680: The server could crash if there were alternate reads from two indexes on a table using the HANDLER interface. * Fixed CVE-2010-3681: NULL pointer dereference leading to (temporary) server DoS. * Fixed CVE-2010-3682: Assertion failure leading to server abort. * Fixed CVE-2010-3833: crash when KILL_BAD_DATA is returned * Fixed CVE-2010-3834: user variable assignments crash server when used within query * Fixed CVE-2010-3835: crash with user variables, assignments, joins. * Fixed CVE-2010-3836: create view cause Assertion failed (crash) * Fixed CVE-2010-3837: crash when group_concat and 'with rollup' in prepared statements * Fixed CVE-2010-3838: crash with longblob and union or update with subquery * Fixed CVE-2010-3840: crash when loading data into geometry function polyfromwkb Checksums-Sha1: e1e76ef466b3888bd9f3579aec99d3a88e42c6fb 1746 mysql-dfsg-5.0_5.0.51a-24+lenny5.dsc b8e39a6006f662885546cfb60d595aa47a95426a 394810 mysql-dfsg-5.0_5.0.51a-24+lenny5.diff.gz aaa3e813fd97fe3769f609c4e7dc0ed7c003537a 61658 mysql-common_5.0.51a-24+lenny5_all.deb 08667e82d6a957e118c85d102acafebe095ad68e 56092 mysql-server_5.0.51a-24+lenny5_all.deb 6fae16846cd1b7b3f575da7d662c211932ed713b 53912 mysql-client_5.0.51a-24+lenny5_all.deb 53faee248e125ee360c1abb4fd44d9ba7c75bf7e 1905570 libmysqlclient15off_5.0.51a-24+lenny5_amd64.deb e8a139bc7c37aebe66c67a0c7e61b5dcf92b5b0b 7589804 libmysqlclient15-dev_5.0.51a-24+lenny5_amd64.deb 5ac50c876235610a7f751fdc1605fc932fb8f811 8207162 mysql-client-5.0_5.0.51a-24+lenny5_amd64.deb 7ea97b46f184e006b032083bd0e07876ea1d5c62 27310608 mysql-server-5.0_5.0.51a-24+lenny5_amd64.deb Checksums-Sha256: c44382ef710d2ba2277d30530be05c7076d4c86893fca9d6bbf91daadb13afae 1746 mysql-dfsg-5.0_5.0.51a-24+lenny5.dsc 612564be8c3ecc0f51b6697f1477191cf939219b2bc5f49162e772d04c49dc67 394810 mysql-dfsg-5.0_5.0.51a-24+lenny5.diff.gz 6ec0e06b0ce6a9fd53ba8689197814f589db5bb76811b1a8d39b29a3070ced90 61658 mysql-common_5.0.51a-24+lenny5_all.deb 58d537180fdabb9f9096e18b4a4b3fec85cf431e628620f3badae8d74255b595 56092 mysql-server_5.0.51a-24+lenny5_all.deb 88c69ff1c8b73e34b1ba8426a51e51f1a88e444d509f3504bd4bdb1b19697b85 53912 mysql-client_5.0.51a-24+lenny5_all.deb b4e66563e2ab78bdaf0012cba957f6f55e4afb6896d50dc2165fabf73bff6777 1905570 libmysqlclient15off_5.0.51a-24+lenny5_amd64.deb 721e460d1a419f48382d6288a971b12c0f5544182f5cf2fa8a04ea595787df75 7589804 libmysqlclient15-dev_5.0.51a-24+lenny5_amd64.deb f03d3e9d82c729ed78afde98ebced0e0b95086d6fa442523e352699c6f466684 8207162 mysql-client-5.0_5.0.51a-24+lenny5_amd64.deb d1c3bbeda5ff0281f868b04642a805db05ef693e458a258187d1e66003642151 27310608 mysql-server-5.0_5.0.51a-24+lenny5_amd64.deb Files: 4d454b12f1d0cffcd88dcccff0833d4c 1746 misc optional mysql-dfsg-5.0_5.0.51a-24+lenny5.dsc 03b1b73d47384427f899ef6ba0352e4e 394810 misc optional mysql-dfsg-5.0_5.0.51a-24+lenny5.diff.gz 0ee65bd941137557ad8bb23cc9c1c4a1 61658 misc optional mysql-common_5.0.51a-24+lenny5_all.deb bc41f25efcea60033f8fff3aac280a53 56092 misc optional mysql-server_5.0.51a-24+lenny5_all.deb 01e64881812733f0c4bc1252121afdbf 53912 misc optional mysql-client_5.0.51a-24+lenny5_all.deb 4da7764c29f7302c4cd14b937bff3154 1905570 libs optional libmysqlclient15off_5.0.51a-24+lenny5_amd64.deb 8f27174357c3096d0bc8f6c345da3137 7589804 libdevel optional libmysqlclient15-dev_5.0.51a-24+lenny5_amd64.deb 104a20afbac25e8321c52c473a743fec 8207162 misc optional mysql-client-5.0_5.0.51a-24+lenny5_amd64.deb f4e7e0d86c5a8551321343d9821631ca 27310608 misc optional mysql-server-5.0_5.0.51a-24+lenny5_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk0cSH4ACgkQNxpp46476ao1GgCdE55kQDz3jMZvFDoVXco12Fuq YMsAn1Ja6y8FJcRYEW+EVjL1i3SMzpMy =orWT -----END PGP SIGNATURE-----