You are here
Home > Preporuke > Sigurnosni nedostaci programskih paketa mysql-5.5 i mysql-5.7

Sigurnosni nedostaci programskih paketa mysql-5.5 i mysql-5.7

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3537-1
January 22, 2018

mysql-5.5, mysql-5.7 vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 17.10
– Ubuntu 16.04 LTS
– Ubuntu 14.04 LTS

Summary:

Several security issues were fixed in MySQL.

Software Description:
– mysql-5.7: MySQL database
– mysql-5.5: MySQL database

Details:

Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.

MySQL has been updated to 5.5.59 in Ubuntu 14.04 LTS. Ubuntu 16.04 LTS,
and Ubuntu 17.10 have been updated to MySQL 5.7.21.

In addition to security fixes, the updated packages contain bug fixes,
new features, and possibly incompatible changes.

Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-59.html
http://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-21.html
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 17.10:
mysql-server-5.7 5.7.21-0ubuntu0.17.10.1

Ubuntu 16.04 LTS:
mysql-server-5.7 5.7.21-0ubuntu0.16.04.1

Ubuntu 14.04 LTS:
mysql-server-5.5 5.5.59-0ubuntu0.14.04.1

In general, a standard system update will make all the necessary changes.

References:
https://www.ubuntu.com/usn/usn-3537-1
CVE-2018-2562, CVE-2018-2565, CVE-2018-2573, CVE-2018-2576,
CVE-2018-2583, CVE-2018-2586, CVE-2018-2590, CVE-2018-2600,
CVE-2018-2612, CVE-2018-2622, CVE-2018-2640, CVE-2018-2645,
CVE-2018-2646, CVE-2018-2647, CVE-2018-2665, CVE-2018-2667,
CVE-2018-2668, CVE-2018-2696, CVE-2018-2703

Package Information:
https://launchpad.net/ubuntu/+source/mysql-5.7/5.7.21-0ubuntu0.17.10.1
https://launchpad.net/ubuntu/+source/mysql-5.7/5.7.21-0ubuntu0.16.04.1
https://launchpad.net/ubuntu/+source/mysql-5.5/5.5.59-0ubuntu0.14.04.1

—–BEGIN PGP SIGNATURE—–
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=jzOr
—–END PGP SIGNATURE—–

AutorPetar Bertok
Cert idNCERT-REF-2018-01-0154-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa openssh

Otkriveni su sigurnosni nedostaci u programskom paketu openssh za operacijski sustav Ubuntu. Otkriveni nedostaci potencijalnim napadačima omogućuju stjecanje viših privilegija,...

Close