Secunia Security Advisory - Ubuntu has issued an update for mysql-dfsg. This fixes a vulnerability, which potentially can be exploited by malicious people to conduct SQL injection attacks.
81abebb2302b4162b1f9e62c72a4e67ff15d228c52342a8c0da32aff87877e2f
----------------------------------------------------------------------
Want to join the Secunia Security Team?
Secunia offers a position as a security specialist, where your daily
work involves reverse engineering of software and exploit code,
auditing of source code, and analysis of vulnerability reports.
http://secunia.com/secunia_security_specialist/
----------------------------------------------------------------------
TITLE:
Ubuntu update for mysql-dfsg
SECUNIA ADVISORY ID:
SA20712
VERIFY ADVISORY:
http://secunia.com/advisories/20712/
CRITICAL:
Moderately critical
IMPACT:
Manipulation of data
WHERE:
>From remote
OPERATING SYSTEM:
Ubuntu Linux 5.10
http://secunia.com/product/6606/
DESCRIPTION:
Ubuntu has issued an update for mysql-dfsg. This fixes a
vulnerability, which potentially can be exploited by malicious people
to conduct SQL injection attacks.
For more information:
SA20365
SOLUTION:
Apply updated packages.
-- Ubuntu 5.10 --
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/mysql-dfsg-4.1_4.1.12-1ubuntu3.5.diff.gz
Size/MD5: 164408 5397489739ab8a6fa1e2d7571ae16ca2
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/mysql-dfsg-4.1_4.1.12-1ubuntu3.5.dsc
Size/MD5: 1024 22dc09e63f2b4127c80c059bd6153c04
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/mysql-dfsg-4.1_4.1.12.orig.tar.gz
Size/MD5: 15921909 c7b83a19bd8a4f42d5d64c239d05121f
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/mysql-common-4.1_4.1.12-1ubuntu3.5_all.deb
Size/MD5: 36658 8445340ee40a549040a29f7f89fa6055
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14-dev_4.1.12-1ubuntu3.5_amd64.deb
Size/MD5: 5831402 04b5f068cace48115f03eaa2945ba4f7
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14_4.1.12-1ubuntu3.5_amd64.deb
Size/MD5: 1540532 52379ea5384399887a5044e2dc70a362
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-client-4.1_4.1.12-1ubuntu3.5_amd64.deb
Size/MD5: 898266 102c1f4e3a52f002c0072639a38fd1f1
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-server-4.1_4.1.12-1ubuntu3.5_amd64.deb
Size/MD5: 18433534 0b59eb84f010a37866855db11bc212d4
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14-dev_4.1.12-1ubuntu3.5_i386.deb
Size/MD5: 5347970 10e3a08014562d78a92c78f9473606ad
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14_4.1.12-1ubuntu3.5_i386.deb
Size/MD5: 1475306 fe18f1652d49ce4f1f01f1fb41293ee0
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-client-4.1_4.1.12-1ubuntu3.5_i386.deb
Size/MD5: 866276 c4620364312b32767f4b8c93ca85ea6a
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-server-4.1_4.1.12-1ubuntu3.5_i386.deb
Size/MD5: 17336092 c0a7e15a536c68f101d711faca79acd0
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14-dev_4.1.12-1ubuntu3.5_powerpc.deb
Size/MD5: 6069036 84fe04fd9e556e03a5f8017b0287056e
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14_4.1.12-1ubuntu3.5_powerpc.deb
Size/MD5: 1548894 042a41167cffb3aa116ceca7b144c04a
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-client-4.1_4.1.12-1ubuntu3.5_powerpc.deb
Size/MD5: 937510 b42029e8720887a9414a1e5affdfa2bf
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-server-4.1_4.1.12-1ubuntu3.5_powerpc.deb
Size/MD5: 18523172 687d56f3e0ea63af4bc5d972849e7019
sparc architecture (Sun SPARC/UltraSPARC)
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14-dev_4.1.12-1ubuntu3.5_sparc.deb
Size/MD5: 5657096 78aec682713ebb64ff7f56f5ec30a390
http://security.ubuntu.com/ubuntu/pool/main/m/mysql-dfsg-4.1/libmysqlclient14_4.1.12-1ubuntu3.5_sparc.deb
Size/MD5: 1516244 461600c34dd324e019dd5f253864dcb6
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-client-4.1_4.1.12-1ubuntu3.5_sparc.deb
Size/MD5: 889180 b06d0b10dec55bf34f6af5f93be4bfb1
http://security.ubuntu.com/ubuntu/pool/universe/m/mysql-dfsg-4.1/mysql-server-4.1_4.1.12-1ubuntu3.5_sparc.deb
Size/MD5: 17738656 2f56d26f632002847a5aa20d13ac3d69
ORIGINAL ADVISORY:
http://www.ubuntu.com/usn/usn-303-1
OTHER REFERENCES:
SA20365:
http://secunia.com/advisories/20365/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------