Summary: | <dev-db/mysql-{5.5.58,5.6.38}: Multiple Vulnerabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Aleksandr Wagner (Kivak) <alwag> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | mysql-bugs, subtractum |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html#AppendixMSQL | ||
Whiteboard: | A3 [glsa+ cve glsa+ blocked] | ||
Package list: |
dev-db/mysql-5.6.38
|
Runtime testing required: | --- |
Bug Depends on: | 644986 | ||
Bug Blocks: | 625626 |
Description
Aleksandr Wagner (Kivak)
2017-10-18 16:27:20 UTC
5.6.38 added to the tree. No support for 5.7. Thanks. @Maintainer(s): Please state when you are ready for stabilization. @ Arches, please test and mark stable. The test suite should pass following the official instructions. Local timeouts may be expected on resource starved machines. (each test thread can spawn up to 4 server instances) Target keywords: =dev-db/mysql-5.6.38 alpha amd64 arm hppa ia64 ppc ppc64 x86 # Official test instructions: # USE='embedded extraengine perl server openssl static-libs' \ # FEATURES='test userpriv -usersandbox' \ # ebuild mysql-5.6.38.ebuild \ # clean package # Parallel testing is enabled, auto will try to detect number of cores # You may set this by hand. # The default maximum is 8 unless MTR_MAX_PARALLEL is increased export MTR_PARALLEL="${MTR_PARALLEL:-auto}" amd64 stable ia64 stable x86 stable ppc stable ppc64 stable (In reply to Thomas Deutschmann from comment #6) > x86 stable Getting 404 errors from everywhere on trying to fetch "mysql-extras-20171018-1948Z.tar.bz2" for mysql-5.5.58 (x86). (In reply to subtractum from comment #9) > (In reply to Thomas Deutschmann from comment #6) > > x86 stable > > Getting 404 errors from everywhere on trying to fetch > "mysql-extras-20171018-1948Z.tar.bz2" for mysql-5.5.58 (x86). The stabilization was about 5._6_.38. Please file a bug for 5.5.58 if you have any problems fetching the file, however a quick checked showed that 5.5.58 itself is cached on our mirrors and mysql-extras is available via > $ wget -4 -O /dev/null https://dev.gentoo.org/~grknight/distfiles/mysql-extras-20171018-1948Z.tar.bz2 > --2017-10-30 17:42:13-- https://dev.gentoo.org/~grknight/distfiles/mysql-extras-20171018-1948Z.tar.bz2 > Resolving dev.gentoo.org (dev.gentoo.org)... 140.211.166.183 > Connecting to dev.gentoo.org (dev.gentoo.org)|140.211.166.183|:443... connected. > HTTP request sent, awaiting response... 200 OK > Length: 313540 (306K) [application/x-bzip2] > Saving to: ‘/dev/null’ > > /dev/null 100%[=================================================>] 306,19K 429KB/s in 0,7s > > 2017-10-30 17:42:15 (429 KB/s) - ‘/dev/null’ saved [313540/313540] > (In reply to Thomas Deutschmann from comment #10) > (In reply to subtractum from comment #9) > > The stabilization was about 5._6_.38. > > Please file a bug for 5.5.58 if you have any problems fetching the file, Terribly sorry for the confusion. The summary of this bug says "{5.5.58,5.6.38}", which is why I posted it here. > however a quick checked showed that 5.5.58 itself is cached on our mirrors > and mysql-extras is available via > > > $ wget -4 -O /dev/null https://dev.gentoo.org/~grknight/distfiles/mysql-extras-20171018-1948Z.tar.bz2 > > --2017-10-30 17:42:13-- https://dev.gentoo.org/~grknight/distfiles/mysql-extras-20171018-1948Z.tar.bz2 Strange - after days of trying this, including again just minutes before the above post, it never worked, but just now it successfully fetched from the above location after failing on 20 others first. I guess this is no longer an issue. Thanks! Stable on alpha. arm stable @hppa, ping. Superseded by bug 644986. Added to an existing GLSA. This issue was resolved and addressed in GLSA 201802-04 at https://security.gentoo.org/glsa/201802-04 by GLSA coordinator Thomas Deutschmann (whissi). |