Branches for Dapper

Name Status Last Modified Last Commit
lp:ubuntu/dapper/mysql-dfsg 2 Mature 2009-09-29 02:05:13 UTC
2. * SECURITY UPDATE: Fix privilege esca...

Author: Martin Pitt
Revision Date: 2005-09-09 17:52:31 UTC

* SECURITY UPDATE: Fix privilege escalation.
* Add debian/patches/52_CAN-2005-2558_init_syms_functionnames.dpatch:
  - Declare function name buffer to be big enough for the maximum possible
    function name to avoid buffer overflow. This could be exploited only by
    users who have the privilege to create functions.
* References:
  CAN-2005-2558
  http://lists.grok.org.uk/pipermail/full-disclosure/2005-August/035845.html
  http://bugs.debian.org/322133
  Ubuntu #13675

11 of 1 result