Possible duplicate of 239271, 239272... but with modified severity. Multiple CVE fixed: https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html#AppendixMSQL New sources available for download: https://dev.mysql.com/downloads/mysql/ https://dev.mysql.com/downloads/mysql/5.5.html#downloads https://dev.mysql.com/downloads/mysql/5.6.html#downloads https://dev.mysql.com/downloads/mysql/5.7.html#downloads
Patches for 5.7 are in bug 239271, I didn't see this one until just now. I'll see if I can work up patches for the other supported versions in the next day or two, unless someone beats me to it... Meanwhile, since this is security related, if the patches in the other bug look good can a committer get them committed?
Tagging ports-secteam@...
A commit references this bug: Author: mmokhi Date: Mon Aug 5 23:21:26 UTC 2019 New revision: 508218 URL: https://svnweb.freebsd.org/changeset/ports/508218 Log: databases/mysq56-{client, server}: Update to 5.6.45 This update includes security fixes which are mentioned on upstream critical patch report. Further info: https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html#AppendixMSQL PR: 239571 Reported by: serg@tmn.ru Sponsored by: Platform.sh Changes: head/databases/mysql56-client/files/patch-sql-common_client__authentication.cc head/databases/mysql56-server/Makefile head/databases/mysql56-server/distinfo head/databases/mysql56-server/files/patch-sql-common_client__authentication.cc
There are a lot of CVE, Pls Add a vuxml, after that, Approved for 2019Q3
(In reply to Jochen Neumeister from comment #4) Sure, Thanks for both approval and the hint also.
A commit references this bug: Author: mmokhi Date: Tue Aug 20 00:06:58 UTC 2019 New revision: 509387 URL: https://svnweb.freebsd.org/changeset/ports/509387 Log: MFH: r508218 databases/mysq56-{client, server}: Update to 5.6.45 This update includes security fixes which are mentioned on upstream critical patch report. Further info: https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html#AppendixMSQL PR: 239571 Reported by: serg@tmn.ru Sponsored by: Platform.sh Approved by: ports-secteam (joneum) Changes: _U branches/2019Q3/ branches/2019Q3/databases/mysql56-client/files/patch-sql-common_client__authentication.cc branches/2019Q3/databases/mysql56-server/Makefile branches/2019Q3/databases/mysql56-server/distinfo branches/2019Q3/databases/mysql56-server/files/patch-sql-common_client__authentication.cc
Heya Mahdi, this is wrong, there is no Vuxml entry. Could you add that, please? :-) Cheers Jochen
are all works done? When yes, so please close the PR :-)