Summary: | <dev-db/mysql-{5.7.30,8.0.20}: Multiple vulnerabilities (CPU April 2020) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | ajak, mysql-bugs, ppc64, ppc |
Priority: | Normal | Flags: | nattka:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | B3 [glsa+ cve] | ||
Package list: |
dev-db/mysql-5.7.30-r1
dev-db/mysql-8.0.20-r1
|
Runtime testing required: | --- |
Bug Depends on: | |||
Bug Blocks: | 699876, 722780 |
Description
GLSAMaker/CVETool Bot
2020-04-15 21:38:54 UTC
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=354298f979e834d7a95caf530cf61eb580e4b0e6 commit 354298f979e834d7a95caf530cf61eb580e4b0e6 Author: Thomas Deutschmann <whissi@gentoo.org> AuthorDate: 2020-04-30 19:07:18 +0000 Commit: Thomas Deutschmann <whissi@gentoo.org> CommitDate: 2020-04-30 20:44:55 +0000 dev-db/mysql: bump to v8.0.20 Bug: https://bugs.gentoo.org/717628 Package-Manager: Portage-2.3.99, Repoman-2.3.22 Signed-off-by: Thomas Deutschmann <whissi@gentoo.org> dev-db/mysql/Manifest | 2 + dev-db/mysql/mysql-8.0.20.ebuild | 1108 ++++++++++++++++++++++++++++++++++++++ 2 files changed, 1110 insertions(+) The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=1d17c28118c0eb467d78c2d7a7432e675cadcbd4 commit 1d17c28118c0eb467d78c2d7a7432e675cadcbd4 Author: Thomas Deutschmann <whissi@gentoo.org> AuthorDate: 2020-04-30 21:25:21 +0000 Commit: Thomas Deutschmann <whissi@gentoo.org> CommitDate: 2020-04-30 21:42:16 +0000 dev-db/mysql: bump to v5.7.30 Bug: https://bugs.gentoo.org/717628 Package-Manager: Portage-2.3.99, Repoman-2.3.22 Signed-off-by: Thomas Deutschmann <whissi@gentoo.org> dev-db/mysql/Manifest | 2 + dev-db/mysql/mysql-5.7.30.ebuild | 975 +++++++++++++++++++++++++++++++++++++++ 2 files changed, 977 insertions(+) @ arches, please test and mark stable: =dev-db/mysql-5.7.30 amd64 arm arm64 ia64 ppc ppc64 x86 =dev-db/mysql-8.0.20 amd64 arm arm64 ia64 ppc ppc64 x86 # Official test instructions: ulimit -n 16500 && \ USE='perl server' \ FEATURES='test userpriv -usersandbox' \ ebuild mysql-X.X.XX.ebuild \ digest clean package Note: <mysql-8 will need USE=latin1 for tests! arm64 stable amd64 stable arm stable x86 stable @ppc, @ppc64: ping PPC, PPC64: ping Unable to check for sanity:
> no match for package: dev-db/mysql-5.7.30
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=331adc8a03e7e38a95d7ff3e0ec54d0b849401c7 commit 331adc8a03e7e38a95d7ff3e0ec54d0b849401c7 Author: Thomas Deutschmann <whissi@gentoo.org> AuthorDate: 2020-07-26 01:12:01 +0000 Commit: Thomas Deutschmann <whissi@gentoo.org> CommitDate: 2020-07-26 01:46:04 +0000 dev-db/mysql: bump to v5.7.31 Bug: https://bugs.gentoo.org/717628 Package-Manager: Portage-3.0.0, Repoman-2.3.23 Signed-off-by: Thomas Deutschmann <whissi@gentoo.org> dev-db/mysql/Manifest | 2 + dev-db/mysql/mysql-5.7.31.ebuild | 1219 ++++++++++++++++++++++++++++++++++++++ 2 files changed, 1221 insertions(+) https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=371586424f5947781143a610b063cbb10e7b7021 commit 371586424f5947781143a610b063cbb10e7b7021 Author: Thomas Deutschmann <whissi@gentoo.org> AuthorDate: 2020-07-26 00:22:40 +0000 Commit: Thomas Deutschmann <whissi@gentoo.org> CommitDate: 2020-07-26 01:46:03 +0000 dev-db/mysql: bump to v8.0.21 Bug: https://bugs.gentoo.org/717628 Package-Manager: Portage-3.0.0, Repoman-2.3.23 Signed-off-by: Thomas Deutschmann <whissi@gentoo.org> dev-db/mysql/Manifest | 2 + dev-db/mysql/mysql-8.0.21.ebuild | 1165 ++++++++++++++++++++++++++++++++++++++ 2 files changed, 1167 insertions(+) GLSA vote: no. ppc, ppc64: ping ppc64, ppc: Ping ppc64, ppc: ping They probably cannot, see bug 711940. Added to an existing GLSA request. This issue was resolved and addressed in GLSA 202105-27 at https://security.gentoo.org/glsa/202105-27 by GLSA coordinator Thomas Deutschmann (whissi). |