Subject: Re: mysql-server-5.0.24a has vulnerabilities
To: matthew sporleder <msporleder@gmail.com>
From: Gilles Gravier <Gilles@Gravier.org>
List: netbsd-users
Date: 09/21/2006 14:44:24
Actually, I got the answer... which is "when MySQL 5.0.25 is out"... 
since MySQL is still also at 5.0.24a on the official distrib site.

:)

Time to be patient... and careful.

Gilles

matthew sporleder wrote:
> On 9/21/06, Gilles Gravier <Gilles@gravier.org> wrote:
>> Hi all!
>>
>> For over a week, I've been getting this during the security scan of my
>> machine :
>>
>> Package mysql-server-5.0.24a has a security-bypass vulnerability, see 
>> http://secunia.com/advisories/21506/
>> Package mysql-server-5.0.24a has a privilge-escalation vulnerability, 
>> see http://secunia.com/advisories/21506/
>>
>>
>> Any idea when mysql-server will be patched / updated?
>>
>
> This is probably a better question for a pkgsrc list, but I would
> assume that since pkgsrc knows about the vulnerability, a new pkg is
> forthcoming.
>
> _Matt

-- 
/*Gilles Gravier*/ *=* *Gilles@Gravier.org* <mailto:Gilles@Gravier.org> 
*=* *http://www.gravier.org/*
ICQ : *77488526* 
<http://www.icq.com/whitepages/about_me.php?Uin=77488526> * || *MSN 
Messenger : Gilles@Gravier.org <http://members.msn.com/Gilles@Gravier.org>*
*Skype : ggravier <callto://ggravier>* || *Y! : ggravier 
<http://profiles.yahoo.com/ggravier> || AOL : gillesgravier 
<aim:goim?screenname=gillesgravier>
PGP Key ID : *0x8DE6D026* 
<http://pgp.mit.edu:11371/pks/lookup?search=0x8DE6D026&op=index>
"Chastity is its own punishment." (/Solomon Short/) [/David Gerrold/]
"De toutes les aberrations sexuelles, la chasteté est la plus 
aberrante." [Anatole France]