Your message dated Thu, 16 Oct 2014 21:35:09 +0000
with message-id <[email protected]>
and subject line Bug#556507: fixed in dbconfig-common 1.8.47+nmu2
has caused the Debian Bug report #556507,
regarding does not escape database name
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
556507: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=556507
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: dbconfig-common
Version: 1.8.41
Severity: normal

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi

it looks like dbconfig-common does not escape database name. When user
enters something like foo-bar as database name, it is passed to MySQL
without escaping and it fails:

mysql said: ERROR 1064 (42000) at line 1: You have an error in your SQL
syntax; check the manual that corresponds to your MySQL server version
for the right syntax to use near '-bar' at line 1

- -- 
        Michal Čihař | http://cihar.com | http://blog.cihar.com

- -- System Information:
Debian Release: squeeze/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'stable'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.27.37-0.1-default (SMP w/2 CPU cores)
Locale: LANG=cs_CZ.UTF-8, LC_CTYPE=cs_CZ.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages dbconfig-common depends on:
ii  debconf [debconf-2.0]         1.5.28     Debian configuration management sy
ii  ucf                           3.0024     Update Configuration File: preserv

dbconfig-common recommends no packages.

Versions of packages dbconfig-common suggests:
ii  mysql-client                  5.1.40-1   MySQL database client (metapackage
ii  mysql-client-5.1 [virtual-mys 5.1.40-1   MySQL database client binaries
ii  postgresql-client-8.3 [postgr 8.3.8-1    front-end programs for PostgreSQL 

- -- debconf information excluded

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAksBVWYACgkQ3DVS6DbnVgQihwCfSPjLNPiuDdNWRpZ7byrq21nX
BrMAoPR4+Dr14Mypyz8CkI6uH/acxOY6
=wNxi
-----END PGP SIGNATURE-----



--- End Message ---
--- Begin Message ---
Source: dbconfig-common
Source-Version: 1.8.47+nmu2

We believe that the bug you reported is fixed in the latest version of
dbconfig-common, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Paul Gevers <[email protected]> (supplier of updated dbconfig-common package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Mon, 13 Oct 2014 21:01:26 +0200
Source: dbconfig-common
Binary: dbconfig-common
Architecture: source all
Version: 1.8.47+nmu2
Distribution: unstable
Urgency: low
Maintainer: Sean Finney <[email protected]>
Changed-By: Paul Gevers <[email protected]>
Description:
 dbconfig-common - common framework for packaging database applications
Closes: 556507 662778 720517 764777
Changes:
 dbconfig-common (1.8.47+nmu2) unstable; urgency=low
 .
   * Non-maintainer upload.
   * Fix pending l10n issues. Debconf translations:
     - Brazilian Portuguese (Adriano Rafael Gomes) (Closes: #764777)
     - Turkish (Atila KOÇ) (Closes: #662778)
   * Leave ownership and permissions of configuration files as they were
     (Closes: #720517)
   * Escape database name in create command (Closes: #556507)
Checksums-Sha1:
 5775f423b917fc5b1ff4354fb630a8f18a28c401 1369 dbconfig-common_1.8.47+nmu2.dsc
 b4eb082cdc7341f38ef9b9639a765091bccec9d9 373518 
dbconfig-common_1.8.47+nmu2.tar.gz
 f4360dea5ba12677c78971c80517d64de63352fc 627860 
dbconfig-common_1.8.47+nmu2_all.deb
Checksums-Sha256:
 5b9597088604cc8d3b6d6ec8c50a48668be74ea838f40f40a79bd3802b728a64 1369 
dbconfig-common_1.8.47+nmu2.dsc
 cce427a990863b8aacf2be834a2be7ad0131f83ca9d6b083f87246416724d9f2 373518 
dbconfig-common_1.8.47+nmu2.tar.gz
 c0a9bb842df44624ffed83edcd8e23e959d28a2915632ae8da8b25a1fcdb11a6 627860 
dbconfig-common_1.8.47+nmu2_all.deb
Files:
 1cd46118a66e7d1ade8e61e226b11359 1369 admin optional 
dbconfig-common_1.8.47+nmu2.dsc
 447f060fc1b6b096a9f46a5ab6d58322 373518 admin optional 
dbconfig-common_1.8.47+nmu2.tar.gz
 5ec39d2f49a247161a6b547e2d4c7a87 627860 admin optional 
dbconfig-common_1.8.47+nmu2_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iQEcBAEBCAAGBQJUPC2KAAoJEJxcmesFvXUKLrMH/R1YvXJntmo4zR8KoaiIFiou
5n4cz7GR2zx2js2MqzWR3W91iil5RyvY/MyexLc3mqBBvkXp8h0hTcJdTnLwOKvl
xbpXrOvasDTMQnZqFLgSYnEKd8s/w1wU0S0MTWsfWWwxm1GNAeRSLuZazQc01/50
oFthLt9r0JFF4uEh3KdXB/WFna9dSDMM7WbhQzAhezZRbTzkg9R7Bmj2kqrnwhh+
y7j382fHA8rPYfILL+y+4rJAlmDQiHCWNRfiLCU2T9ctN3oAgrPGjx/9jyHLpy7u
V2utG8gu0c/pD2JQcpbynV+x/pqaVQ+WbvnQhyFofbKXYaXxMOfATpOmNt89yJ4=
=939q
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to