Bug#291122: temporary file security hole in mysqlaccess

2005-01-19 Thread Christian Hammers
Hello On 2005-01-18 Joey Hess wrote: > Christian Hammers wrote: > > I guess I will upload the patched packages for unstable then... > > As far as I can see, you've uploaded mysql-dfsg-4.1, but have not fixed > mysql-dfsg. Could you please let me know when you've fixed mysql-dfsg > too so I can tr

Bug#291122: temporary file security hole in mysqlaccess

2005-01-18 Thread Joey Hess
Christian Hammers wrote: > I guess I will upload the patched packages for unstable then... As far as I can see, you've uploaded mysql-dfsg-4.1, but have not fixed mysql-dfsg. Could you please let me know when you've fixed mysql-dfsg too so I can track it and make sure it reaches sarge. -- see sh

Bug#291122: temporary file security hole in mysqlaccess

2005-01-18 Thread Christian Hammers
Hello Joey On 2005-01-18 Joey Hess wrote: > There is a security hole in the mysqlaccess script, as described here: > http://www.vuxml.org/freebsd/ce109fd4-67f3-11d9-a9e7-0001020eed82.html > I've attached a patch taken from Ubuntu. Thanks for reporting. The security team and I am already aware of

Bug#291122: temporary file security hole in mysqlaccess

2005-01-18 Thread Joey Hess
Package: mysql-dfsg Severity: grave Tags: security patch There is a security hole in the mysqlaccess script, as described here: http://www.vuxml.org/freebsd/ce109fd4-67f3-11d9-a9e7-0001020eed82.html I've attached a patch taken from Ubuntu. -- System Information: Debian Release: 3.1 APT prefers