Re: [Fwd: [VulnWatch] Multiple MySQL bugs]
Jesse Tie-Ten-Quee <[email protected]>
| Newsgroups | gmane.linux.lfs.security |
|---|---|
| Organization | http://linuxfromscratch.org |
| Message-ID | <[email protected]> |
Yo, On Tue, Jan 21, 2003 at 06:23:32PM -0700, Ken Dyke wrote: > - Fixed a bug, that allowed to crash mysqld with a specially crafted > packet. > > - Fixed a rare crash (double free'd pointer) when altering a temporary > table. > > - Fixed buffer overrun in libmysqlclient library that allowed malicious > MySQL server to crash the client application. > > - Fixed security-related bug in mysql_change_user() handling. All users > are strongly recommended to upgrade to the version 3.23.54. For anyone that hasn't upgraded yet, the official package is now out. May want to consider putting in a bit of time todo it. -- Jesse Tie-Ten-Quee ( highos at linuxfromscratch dot org ) -- Unsubscribe: send email to [email protected] and put 'unsubscribe lfs-security' in the subject header of the message