[SECURITY] [DSA 3857-1] mysql-connector-java security update

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

[SECURITY] [DSA 3857-1] mysql-connector-java security update

Moritz Muehlenhoff
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3857-1                   [hidden email]
https://www.debian.org/security/                       Moritz Muehlenhoff
May 18, 2017                          https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : mysql-connector-java
CVE ID         : CVE-2017-3586 CVE-2017-3589

Two vulnerabilities have been found in the MySQL Connector/J JDBC driver.

For the stable distribution (jessie), these problems have been fixed in
version 5.1.42-1~deb8u1.

For the upcoming stable distribution (stretch), these problems have been
fixed in version 5.1.42-1.

For the unstable distribution (sid), these problems have been fixed in
version 5.1.42-1.

We recommend that you upgrade your mysql-connector-java packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: [hidden email]
-----BEGIN PGP SIGNATURE-----
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=/sZF
-----END PGP SIGNATURE-----