Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Scientific Linux: 0536-1 Moderate: mysql55-mysql Security Fix

Scientific Large Esm H446
Moderate: mysql55-mysql security update
Date: Tue, 20 May 2014 09:28:18 -0500
Reply-To: Bonnie King 
Sender: Security Errata for Scientific Linux
 
From: Bonnie King 
Subject: FASTBUGS for SL 5x i386, x86_64 now available
Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it.
In-Reply-To: <535FCF10.1050000@fnal.gov>
MIME-Version: 1.0

The following FASTBUGS have been uploaded to

i386:
compat-openldap-2.3.43_2.2.29-28.el5_10.i386.rpm
krb5-devel-1.6.1-71.el5_10.1.i386.rpm
krb5-libs-1.6.1-71.el5_10.1.i386.rpm
krb5-server-1.6.1-71.el5_10.1.i386.rpm
krb5-server-ldap-1.6.1-71.el5_10.1.i386.rpm
krb5-workstation-1.6.1-71.el5_10.1.i386.rpm
openldap-2.3.43-28.el5_10.i386.rpm
openldap-clients-2.3.43-28.el5_10.i386.rpm
openldap-devel-2.3.43-28.el5_10.i386.rpm
openldap-servers-2.3.43-28.el5_10.i386.rpm
openldap-servers-overlays-2.3.43-28.el5_10.i386.rpm
openldap-servers-sql-2.3.43-28.el5_10.i386.rpm
tzdata-2014b-3.24.el5.i386.rpm
tzdata-java-2014b-3.24.el5.i386.rpm

x86_64:
compat-openldap-2.3.43_2.2.29-28.el5_10.i386.rpm
compat-openldap-2.3.43_2.2.29-28.el5_10.x86_64.rpm
krb5-devel-1.6.1-71.el5_10.1.i386.rpm
krb5-devel-1.6.1-71.el5_10.1.x86_64.rpm
krb5-libs-1.6.1-71.el5_10.1.i386.rpm
krb5-libs-1.6.1-71.el5_10.1.x86_64.rpm
krb5-server-1.6.1-71.el5_10.1.x86_64.rpm
krb5-server-ldap-1.6.1-71.el5_10.1.x86_64.rpm
krb5-workstation-1.6.1-71.el5_10.1.x86_64.rpm
openldap-2.3.43-28.el5_10.i386.rpm
openldap-2.3.43-28.el5_10.x86_64.rpm
openldap-clients-2.3.43-28.el5_10.x86_64.rpm
openldap-devel-2.3.43-28.el5_10.i386.rpm
openldap-devel-2.3.43-28.el5_10.x86_64.rpm
openldap-servers-2.3.43-28.el5_10.x86_64.rpm
openldap-servers-overlays-2.3.43-28.el5_10.x86_64.rpm
openldap-servers-sql-2.3.43-28.el5_10.x86_64.rpm
tzdata-2014b-3.24.el5.x86_64.rpm
tzdata-java-2014b-3.24.el5.x86_64.rpm
Date: Fri, 23 May 2014 13:28:26 +0000
Reply-To: scientific-linux-users@
Sender: Security Errata for Scientific Linux
 
From: Pat Riehecky 
Subject: Security ERRATA Moderate: mysql55-mysql on SL5.x i386/x86_64
MIME-Version: 1.0

Synopsis: Moderate: mysql55-mysql security update
Advisory ID: SLSA-2014:0536-1
Issue Date: 2014-05-22
CVE Numbers: CVE-2014-0384
 CVE-2014-2419
 CVE-2014-2430
 CVE-2014-2431
 CVE-2014-2432
 CVE-2014-2436
 CVE-2014-2438
 CVE-2014-2440
--

This update fixes several vulnerabilities in the MySQL database server.
Information about these flaws can be found on the Oracle Critical Patch
Update Advisory page, listed in the References section. (CVE-2014-2436,
CVE-2014-2440, CVE-2014-0384, CVE-2014-2419, CVE-2014-2430, CVE-2014-2431,
CVE-2014-2432, CVE-2014-2438)

After installing this update, the MySQL server daemon (mysqld) will be restarted automatically.
--

SL5
 x86_64
 mysql55-mysql-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-bench-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-debuginfo-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-libs-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-server-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-test-5.5.37-1.el5.x86_64.rpm
 mysql55-mysql-debuginfo-5.5.37-1.el5.i386.rpm
 mysql55-mysql-devel-5.5.37-1.el5.i386.rpm
 mysql55-mysql-devel-5.5.37-1.el5.x86_64.rpm
 i386
 mysql55-mysql-5.5.37-1.el5.i386.rpm
 mysql55-mysql-bench-5.5.37-1.el5.i386.rpm
 mysql55-mysql-debuginfo-5.5.37-1.el5.i386.rpm
 mysql55-mysql-libs-5.5.37-1.el5.i386.rpm
 mysql55-mysql-server-5.5.37-1.el5.i386.rpm
 mysql55-mysql-test-5.5.37-1.el5.i386.rpm
 mysql55-mysql-devel-5.5.37-1.el5.i386.rpm

- Scientific Linux Development Team