Secunia Logo
 
Ubuntu update for MySQL
Secunia Advisory: SA19814
Release Date: 2006-04-28
Last Update: 2006-05-16
Popularity: 5,819 views

Critical:
Less critical
Impact: Security Bypass
Where: Local system
Solution Status: Vendor Patch

OS:Ubuntu Linux 4.10
Ubuntu Linux 5.04
Ubuntu Linux 5.10

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-0903


Description:
Ubuntu has issued an update for MySQL. This fixes a security issue, which can be exploited by malicious users to bypass certain security restrictions.

For more information:
SA19034

Solution:
Apply updated packages.

-- Ubuntu 4.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../mysql-dfsg_4.0.20-2ubuntu1.7.diff.gz
Size/MD5: 176824 f214253e4c2a6ffcfd949bc19410ee6b
http://security.ubuntu.com/ubuntu/poo...dfsg/mysql-dfsg_4.0.20-2ubuntu1.7.dsc
Size/MD5: 894 19ef051a7994a4faea9b248c12dc44b5
http://security.ubuntu.com/ubuntu/poo...ql-dfsg/mysql-dfsg_4.0.20.orig.tar.gz
Size/MD5: 9760117 f092867f6df2f50b34b8065312b9fb2b

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...ysql-common_4.0.20-2ubuntu1.7_all.deb
Size/MD5: 25144 b28d3fdc01b8d8194d0388d8d48a257d

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/poo...lient-dev_4.0.20-2ubuntu1.7_amd64.deb
Size/MD5: 2811182 c4111aec963f9a495b261b299e449c2e
http://security.ubuntu.com/ubuntu/poo...lclient12_4.0.20-2ubuntu1.7_amd64.deb
Size/MD5: 305220 8f6653a1152af3624e68a759a2893827
http://security.ubuntu.com/ubuntu/poo...ql-client_4.0.20-2ubuntu1.7_amd64.deb
Size/MD5: 423266 f5702114938059a53d531535caaad7f5
http://security.ubuntu.com/ubuntu/poo...ql-server_4.0.20-2ubuntu1.7_amd64.deb
Size/MD5: 3578122 92a1b9e4c8d874dffc09ebf5fb13e72b

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/poo...client-dev_4.0.20-2ubuntu1.7_i386.deb
Size/MD5: 2774718 6b2c35f99be213bfc34133995e611f46
http://security.ubuntu.com/ubuntu/poo...qlclient12_4.0.20-2ubuntu1.7_i386.deb
Size/MD5: 288162 61879cbc26a9b7dbb27c6c842546458d
http://security.ubuntu.com/ubuntu/poo...sql-client_4.0.20-2ubuntu1.7_i386.deb
Size/MD5: 397264 612dc9f1b1149a2af49b0a2aa157e009
http://security.ubuntu.com/ubuntu/poo...sql-server_4.0.20-2ubuntu1.7_i386.deb
Size/MD5: 3487310 47ecf2e29f3dbe465dfd990ba80c36eb

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/poo...ent-dev_4.0.20-2ubuntu1.7_powerpc.deb
Size/MD5: 3110894 81feb50003ee69b7e93b809b8c0bfc39
http://security.ubuntu.com/ubuntu/poo...lient12_4.0.20-2ubuntu1.7_powerpc.deb
Size/MD5: 308852 a8fe34e726d5302deb751838ef8ccb06
http://security.ubuntu.com/ubuntu/poo...-client_4.0.20-2ubuntu1.7_powerpc.deb
Size/MD5: 452684 52bfacf4b50418cc8d30fdde7679eab4
http://security.ubuntu.com/ubuntu/poo...-server_4.0.20-2ubuntu1.7_powerpc.deb
Size/MD5: 3770820 3c992663d03b4b9f548207e7dddb2749

-- Ubuntu 5.04 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../mysql-dfsg_4.0.23-3ubuntu2.4.diff.gz
Size/MD5: 347218 5bf62963f2439449d17429b974dc954e
http://security.ubuntu.com/ubuntu/poo...dfsg/mysql-dfsg_4.0.23-3ubuntu2.4.dsc
Size/MD5: 891 cf807937ea7cb09d1717c562c355e2cd
http://security.ubuntu.com/ubuntu/poo...ql-dfsg/mysql-dfsg_4.0.23.orig.tar.gz
Size/MD5: 9814467 5eec8f66ed48c6ff92e73161651a492b

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...ysql-common_4.0.23-3ubuntu2.4_all.deb
Size/MD5: 32366 1a3bd9d864cae3bfa1987f859b5624aa

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/poo...ent12-dev_4.0.23-3ubuntu2.4_amd64.deb
Size/MD5: 2867226 cee7c90e2a0fd2ab3d17ba1b25b74f0d
http://security.ubuntu.com/ubuntu/poo...lclient12_4.0.23-3ubuntu2.4_amd64.deb
Size/MD5: 307670 e7fea674e9dcad07d491e70f80aefa77
http://security.ubuntu.com/ubuntu/poo...ql-client_4.0.23-3ubuntu2.4_amd64.deb
Size/MD5: 431800 6b87ceedfa25337da77b1cb0f461526e
http://security.ubuntu.com/ubuntu/poo...ql-server_4.0.23-3ubuntu2.4_amd64.deb
Size/MD5: 3629366 3ae34465083080e3bf9d620f8cb8cb02

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/poo...ient12-dev_4.0.23-3ubuntu2.4_i386.deb
Size/MD5: 2827210 8efa7c02567c9728cd915d3c40e5a197
http://security.ubuntu.com/ubuntu/poo...qlclient12_4.0.23-3ubuntu2.4_i386.deb
Size/MD5: 290266 d922e809d77b6b5dc3b4ed0b60aab4ca
http://security.ubuntu.com/ubuntu/poo...sql-client_4.0.23-3ubuntu2.4_i386.deb
Size/MD5: 405024 b44e2e31c97d7e53fe0c165c8857dae2
http://security.ubuntu.com/ubuntu/poo...sql-server_4.0.23-3ubuntu2.4_i386.deb
Size/MD5: 3538020 3b77c2725479cf9167f0015ab6c84217

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/poo...t12-dev_4.0.23-3ubuntu2.4_powerpc.deb
Size/MD5: 3181320 b9a3a84b59e90cebc93f0a19cc63c9ef
http://security.ubuntu.com/ubuntu/poo...lient12_4.0.23-3ubuntu2.4_powerpc.deb
Size/MD5: 313258 cbcdd0d05906c05ff730b1b75d04c860
http://security.ubuntu.com/ubuntu/poo...-client_4.0.23-3ubuntu2.4_powerpc.deb
Size/MD5: 462556 3b7b56ceb6c3698ab404080a0692f5ec
http://security.ubuntu.com/ubuntu/poo...-server_4.0.23-3ubuntu2.4_powerpc.deb
Size/MD5: 3840116 63049c52217853f785162ba6d54f133d

-- Ubuntu 5.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...mysql-dfsg_4.0.24-10ubuntu2.3.diff.gz
Size/MD5: 99812 d274d44f9970d8b2489f2a70b033f77a
http://security.ubuntu.com/ubuntu/poo...fsg/mysql-dfsg_4.0.24-10ubuntu2.3.dsc
Size/MD5: 966 2f2a9b55283f1d634dce18e558d92ba3
http://security.ubuntu.com/ubuntu/poo...ql-dfsg/mysql-dfsg_4.0.24.orig.tar.gz
Size/MD5: 9923794 aed8f335795a359f32492159e3edfaa3

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...sql-common_4.0.24-10ubuntu2.3_all.deb
Size/MD5: 35028 a2a4b01f8de78f0489b2fb1563cb5f7a

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/poo...nt12-dev_4.0.24-10ubuntu2.3_amd64.deb
Size/MD5: 3232638 40620811f457a1bc647683d69dabed50
http://security.ubuntu.com/ubuntu/poo...client12_4.0.24-10ubuntu2.3_amd64.deb
Size/MD5: 308672 f67209b5f82fe1db0a8aaf2089775249
http://security.ubuntu.com/ubuntu/poo...l-client_4.0.24-10ubuntu2.3_amd64.deb
Size/MD5: 439872 29286727ed489fca96b7357b31654472
http://security.ubuntu.com/ubuntu/poo...l-server_4.0.24-10ubuntu2.3_amd64.deb
Size/MD5: 3922314 78937781a11bf5746e8bf097f2779d2e

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/poo...ent12-dev_4.0.24-10ubuntu2.3_i386.deb
Size/MD5: 2869396 6e99c974cb0355a5e38d3ad5ac5efc07
http://security.ubuntu.com/ubuntu/poo...lclient12_4.0.24-10ubuntu2.3_i386.deb
Size/MD5: 292406 09616be33817ad7f18b9cf51fe113ff4
http://security.ubuntu.com/ubuntu/poo...ql-client_4.0.24-10ubuntu2.3_i386.deb
Size/MD5: 413836 6e183f2233ce7ce06debad5c859ba0f5
http://security.ubuntu.com/ubuntu/poo...ql-server_4.0.24-10ubuntu2.3_i386.deb
Size/MD5: 3556146 b3baed5ddbe9fb739dd99b7849016e5e

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/poo...12-dev_4.0.24-10ubuntu2.3_powerpc.deb
Size/MD5: 3091448 0396a05bb982ca252035a11c2c05bae7
http://security.ubuntu.com/ubuntu/poo...ient12_4.0.24-10ubuntu2.3_powerpc.deb
Size/MD5: 306534 0acfdb89ce0e89142f97ccf9a35ed37a
http://security.ubuntu.com/ubuntu/poo...client_4.0.24-10ubuntu2.3_powerpc.deb
Size/MD5: 453810 d5e519305ce715c0092e943331d0e6ce
http://security.ubuntu.com/ubuntu/poo...server_4.0.24-10ubuntu2.3_powerpc.deb
Size/MD5: 3665140 272c761ae9f0c232444c7701a65a98c9

Changelog:
2006-05-16: Updated "Solution" section. Updated packages for Ubuntu 5.04 and 5.10 have been issued.

Original Advisory:
http://www.ubuntu.com/usn/usn-274-1
http://www.ubuntu.com/usn/usn-274-2

Other References:
SA19034:
http://secunia.com/advisories/19034/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Apple iPhone / iPod touch Multiple Vulnerabilities // 33 views
2. vBulletin Visitor Messages Script Insertion Vulnerability // 24 views
3. Easyedit CMS Multiple SQL Injection Vulnerabilities // 23 views
4. Adobe Flash Player Multiple Security Issues and Vulnerabilities // 23 views
5. Sun Java JDK / JRE Multiple Vulnerabilities // 22 views
6. IBM Workplace Web Content Management Cross-Site Scripting Vulnerabilities // 21 views
7. Fedora update for thunderbird // 21 views
8. Checkpoint VPN-1 Information Disclosure Vulnerability // 21 views
9. SemanticScuttle Cross-Site Scripting Vulnerabilities // 20 views
10. BitDefender Antivirus PDF Processing Memory Corruption Vulnerability // 19 views