[SECURITY] Fedora 18 Update: mysql-5.5.34-1.fc18

updates at fedoraproject.org updates at fedoraproject.org
Sat Nov 2 04:56:50 UTC 2013


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-19648
2013-10-22 03:55:18
--------------------------------------------------------------------------------

Name        : mysql
Product     : Fedora 18
Version     : 5.5.34
Release     : 1.fc18
URL         : http://www.mysql.com
Summary     : MySQL client programs and shared libraries
Description :
MySQL is a multi-user, multi-threaded SQL database server. MySQL is a
client/server implementation consisting of a server daemon (mysqld)
and many different client programs and libraries. The base package
contains the standard MySQL client programs and generic MySQL files.

--------------------------------------------------------------------------------
Update Information:

Update to MySQL 5.5.34, for various fixes described at http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-34.html
--------------------------------------------------------------------------------
ChangeLog:

* Fri Oct 18 2013 Honza Horak <hhorak at redhat.com> 5.5.34-1
- Update to MySQL 5.5.34, for various fixes described at
  http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-34.html
* Wed Aug 21 2013 Honza Horak <hhorak at redhat.com> 5.5.33-1
- Update to MySQL 5.5.33, for various fixes described at
  http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-33.html
* Fri Jun 14 2013 Honza Horak <hhorak at redhat.com> 5.5.32-1
- Use man pages from 5.5.30, because their license do not
  allow us to ship them since 5.5.31
- Update to MySQL 5.5.32, for various fixes described at
  http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-32.html
* Fri Apr 19 2013 Honza Horak <hhorak at redhat.com> 5.5.31-1
- Update to MySQL 5.5.31, for various fixes described at
  http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-31.html
* Tue Feb 12 2013 Honza Horak <hhorak at redhat.com> 5.5.30-1
- Update to MySQL 5.5.30, for various fixes described at
  http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-30.html
* Tue Feb 12 2013 Honza Horak <hhorak at redhat.com> 5.5.29-3
- Use real- prefix for cross-package requirements
* Mon Feb 11 2013 Honza Horak <hhorak at redhat.com> 5.5.29-2
- Provide own symbols with real- prefix to distinguish packages from other
  MySQL implementations unambiguously
* Wed Jan  2 2013 Tom Lane <tgl at redhat.com> 5.5.29-1
- Update to MySQL 5.5.29, for various fixes described at
  http://dev.mysql.com/doc/refman/5.5/en/news-5-5-29.html
- Fix inaccurate default for socket location in mysqld-wait-ready
Resolves: #890535
* Thu Dec  6 2012 Honza Horak <hhorak at redhat.com> 5.5.28-3
- Rebase patches to not leave backup files when not applied smoothly
- Use --no-backup-if-mismatch to prevent including backup files
* Wed Dec  5 2012 Tom Lane <tgl at redhat.com> 5.5.28-2
- Add patch for CVE-2012-5611
Resolves: #883642
- Widen DH key length from 512 to 1024 bits to meet minimum requirements
  of FIPS 140-2
Related: #877124
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1019978 - CVE-2013-3839 mysql: unspecified DoS related to Optimizer (CPU October 2013)
        https://bugzilla.redhat.com/show_bug.cgi?id=1019978
  [ 2 ] Bug #1019997 - CVE-2013-5807 mysql: unspecified flaw related to Replication (CPU October 2013)
        https://bugzilla.redhat.com/show_bug.cgi?id=1019997
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update mysql' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list