Jump to content
Compatible Support Forums
Sign in to follow this  
news

[SECURITY] [DLA 708-1] mysql-5.5 security update

Recommended Posts

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA256

 

Package : mysql-5.5

Version : 5.5.53-0+deb7u1

CVE ID : CVE-2016-5584 CVE-2016-7440

Debian Bug : 841050

 

Several issues have been discovered in the MySQL database server. The

vulnerabilities are addressed by upgrading MySQL to the new upstream

version 5.5.53, which includes additional changes, such as performance

improvements, bug fixes, new features, and possibly incompatible

changes. Please see the MySQL 5.5 Release Notes and Oracle's Critical

Patch Update advisory for further details:

 

* https://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-53.html

* http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html

 

Also note that packaging will now create /var/lib/mysql-files, as

server will now by default restrict all import/export operations to

this directory.This can be changed using the secure-file-priv

configuration option.

 

For Debian 7 "Wheezy", these problems have been fixed in version

5.5.53-0+deb7u1.

 

We recommend that you upgrade your mysql-5.5 packages.

 

Further information about Debian LTS security advisories, how to apply

these updates to your system and frequently asked questions can be

found at: https://wiki.debian.org/LTS

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v2

 

iQIcBAEBCAAGBQJYLDKpAAoJEPZk0la0aRp94OoP/2iXowCIpc6lNK49O92kwN9B

/IxeLO1ZrmCGbyuRM6TeKJoOtzpR8lfEv/wraM8jufQ/6nttto4bP6xr1q005UoZ

6oP8lRTies1QxxyS0kAlqLpgfnwTufmvdJnOh0lXlSDTwNuQEkdMFtrBSbrLmHaR

cTTQU2q0yuy302YYStZ7eilYUsqTMSTf1+YeTd1U2iGI6JRj/lw2qFNEFyhL1u1Y

QxiANKtBkYqH1LfThFwNYFLvgSTP2q+8XFNzz1xyC+G1VnvpJKvmqeSeqp1Nnrd9

QBhSyRm7KaRdLTIt68n1YS9H5fZRtKIJp8yHocr4aTWPWTXnwbjjgUdZPgg4esf7

xRp4vY96/UntY6ETgIHUtN0Q+VsLy4BZClowjCD8WcJ4UVv75VzomRgkZfXK66Mm

zdbXVW3I5thoiagGYFqkNsSUgNsd2wfkyU56dxn0qKtvCDf8w7BPGYUDmJgXEihO

d5oSkzJlZKgtelgw5VyZdKmP5IXjWy9dtqqa9IRjHi3V6Dq6xxfebQptQKad/9yt

lsEMjYp4sBJ0cEVBhL/3S+zpZSCkm9QpiC48w+h3fJh6XXvFLAoVeGSP9ltgkk0j

7QioK8hIDpzG6PWAuVwDgfTIuzvrIhHPndkGou+b7ZATGAXFbi40B50b5Fwg6lc4

MOSz+pBeXTKyVF9mX8F9

=t4OH

-----END PGP SIGNATURE-----

 

 

 

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
Sign in to follow this  

×