Subject: Re: mysql-server-5.0.24a has vulnerabilities
To: matthew sporleder <msporleder@gmail.com>
From: Gilles Gravier <Gilles@Gravier.org>
List: netbsd-users
Date: 09/21/2006 14:44:24
Actually, I got the answer... which is "when MySQL 5.0.25 is out"...
since MySQL is still also at 5.0.24a on the official distrib site.
:)
Time to be patient... and careful.
Gilles
matthew sporleder wrote:
> On 9/21/06, Gilles Gravier <Gilles@gravier.org> wrote:
>> Hi all!
>>
>> For over a week, I've been getting this during the security scan of my
>> machine :
>>
>> Package mysql-server-5.0.24a has a security-bypass vulnerability, see
>> http://secunia.com/advisories/21506/
>> Package mysql-server-5.0.24a has a privilge-escalation vulnerability,
>> see http://secunia.com/advisories/21506/
>>
>>
>> Any idea when mysql-server will be patched / updated?
>>
>
> This is probably a better question for a pkgsrc list, but I would
> assume that since pkgsrc knows about the vulnerability, a new pkg is
> forthcoming.
>
> _Matt
--
/*Gilles Gravier*/ *=* *Gilles@Gravier.org* <mailto:Gilles@Gravier.org>
*=* *http://www.gravier.org/*
ICQ : *77488526*
<http://www.icq.com/whitepages/about_me.php?Uin=77488526> * || *MSN
Messenger : Gilles@Gravier.org <http://members.msn.com/Gilles@Gravier.org>*
*Skype : ggravier <callto://ggravier>* || *Y! : ggravier
<http://profiles.yahoo.com/ggravier> || AOL : gillesgravier
<aim:goim?screenname=gillesgravier>
PGP Key ID : *0x8DE6D026*
<http://pgp.mit.edu:11371/pks/lookup?search=0x8DE6D026&op=index>
"Chastity is its own punishment." (/Solomon Short/) [/David Gerrold/]
"De toutes les aberrations sexuelles, la chasteté est la plus
aberrante." [Anatole France]