ELSA-2010-0110

ELSA-2010-0110 - mysql security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-02-16

Description



[4.1.22-2.el4.3]
- Add comment suggesting disabling symbolic links in /etc/my.cnf

[4.1.22-2.el4.2]
- Add fixes for CVE-2008-4098, CVE-2009-4030 (two successive attempts to fix
DATA/INDEX DIRECTORY vulnerabilities) and CVE-2008-4456 (mysql command line
client XSS flaw)
Resolves: #512255

[4.1.22-2.el4.1]
- Add fix for CVE-2009-2446 (format string vulnerability in COM_CREATE_DB and
COM_DROP_DB processing)
Resolves: #512255


Related CVEs


CVE-2008-4456
CVE-2009-2446
CVE-2009-4030
CVE-2008-4098

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) mysql-4.1.22-2.el4_8.3.src.rpm07413b51cf8c5fc5afa4e37a90c2652aELSA-2010-0824
mysql-4.1.22-2.el4_8.3.i386.rpm7d7592718ba4126c3c9a6e5da8497f65ELSA-2010-0824
mysql-bench-4.1.22-2.el4_8.3.i386.rpmf105c5d646af22d7ae1bd35ca31c6f48ELSA-2010-0824
mysql-devel-4.1.22-2.el4_8.3.i386.rpmff575c790140c25f876e7dcfde42904aELSA-2010-0824
mysql-server-4.1.22-2.el4_8.3.i386.rpm32191e4b198a9980c3414b1a841153eaELSA-2010-0824
Oracle Linux 4 (ia64) mysql-4.1.22-2.el4_8.3.src.rpm07413b51cf8c5fc5afa4e37a90c2652aELSA-2010-0824
mysql-4.1.22-2.el4_8.3.i386.rpm7d7592718ba4126c3c9a6e5da8497f65ELSA-2010-0824
mysql-4.1.22-2.el4_8.3.ia64.rpm0a044d9bbcfc3a0de0d1d53a86a766dcELSA-2010-0824
mysql-bench-4.1.22-2.el4_8.3.ia64.rpm795b8cbeac569ea4ceeb1993190cea83ELSA-2010-0824
mysql-devel-4.1.22-2.el4_8.3.ia64.rpmb229abc2dad795f09169ddcdb17f795bELSA-2010-0824
mysql-server-4.1.22-2.el4_8.3.ia64.rpm5447d25838126de11f645ed0aae4d4a6ELSA-2010-0824
Oracle Linux 4 (x86_64) mysql-4.1.22-2.el4_8.3.src.rpm07413b51cf8c5fc5afa4e37a90c2652aELSA-2010-0824
mysql-4.1.22-2.el4_8.3.i386.rpm7d7592718ba4126c3c9a6e5da8497f65ELSA-2010-0824
mysql-4.1.22-2.el4_8.3.x86_64.rpmc8b3940664009d6c75b13f5e3754b759ELSA-2010-0824
mysql-bench-4.1.22-2.el4_8.3.x86_64.rpm3b40af78f29c91547956d4909f8cfa47ELSA-2010-0824
mysql-devel-4.1.22-2.el4_8.3.x86_64.rpm07b643f17adaca8fbae8cd61a2dfecdeELSA-2010-0824
mysql-server-4.1.22-2.el4_8.3.x86_64.rpm28a0ff8b8a668f49ee455526b9e7d8d5ELSA-2010-0824



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete