-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ## ## Patch description of patch 19ed94f90bf16ea19b3c563f59dd7047 ## Kind: security Shortdescription.english: Security update for MySQL Longdescription.english: Applies to Package: mysql Product(s): Release: 20050324 Obsoletes: none Indications Everyone using MySQL should update. Contraindications None. Problem description This update fixes a broken mysqlhotcopy script as well as several security related bugs: * CAN-2004-0835: privilege escalation in ALTER TABLE RENAME * CAN-2004-0836: potential memory overrun with compromised DNS server * CAN-2004-0837: concurrent accesses to MERGE tables can result in crash * CAN-2004-0956: crash with MATCH..AGAINST * CAN-2004-0957: privilege escalation on GRANT ALL ON * CAN-2005-0709: code execution through CREATE FUNCTION * CAN-2005-0710: load arbitrary libraries * CAN-2005-0711: predictable temproary file names with CREATE TEMPORARY TABLE Solution Please install the updates provided at the location noted below. Installation notes This update is provided as an RPM package that can easily be installed onto a running system by using this command: rpm -Fvh mysql.rpm Hsilgne.noitpircsedgnol: Size: 5909 MinYaST1Version: MinYaST2Version: UpdateOnlyInstalled: true Packages: ## ## -----> mysql <----- ## Filename: mysql.rpm Label: A true multi-user, multi-threaded SQL database server Series: i586 Size: 15994944 6051387 PatchRpmBasedOn: 3.23.52-106 3.23.52-106 3.23.52-124 3.23.52-126 3.23.52-27 3.23.52-41 3.23.52-44 PatchRpmSize: 15994944 2252565 Buildtime: 1111504707 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: Productivity/Databases/Servers Copyright: Commercial, Other License(s), see package AuthorName: Michael Widenius David Axmark AuthorAddress: Version: 3.23.52-128 StartCommand: Obsoletes: Requires: /usr/sbin/useradd fileutils fillup aaa_base /bin/sh /bin/sh /usr/bin/perl ld-linux.so.2 libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libc.so.6(GLIBC_2.1.2) libc.so.6(GLIBC_2.1.3) libc.so.6(GLIBC_2.2) libcrypt.so.1 libcrypt.so.1(GLIBC_2.0) libdl.so.2 libdl.so.2(GLIBC_2.0) libdl.so.2(GLIBC_2.1) libgcc_s.so.1 libgcc_s.so.1(GCC_3.0) libgcc_s.so.1(GLIBC_2.0) libm.so.6 libm.so.6(GLIBC_2.0) libnsl.so.1 libpthread.so.0 libpthread.so.0(GLIBC_2.0) libpthread.so.0(GLIBC_2.1) libpthread.so.0(GLIBC_2.2) libstdc++.so.5 libstdc++.so.5(CXXABI_1.2) libstdc++.so.5(GLIBCPP_3.2) libz.so.1 rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: mysql Segakcap: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFCQtvUqE7a6JyACsoRAvH2AJ9A2aA/WhoaludWLiwvSIVLmK2NiACc C9iutkGNJ0pFu0P3BjWiDKIdHCE= =AtZX -----END PGP SIGNATURE-----