Bug#912916: mysql-connector-java: CVE-2018-3258: allows low privileged attacker to compromise it

Markus Koschany apo at debian.org
Fri Nov 9 22:59:24 GMT 2018


Control: retitle -1 mysql-connector-java: removal from Debian
Control: block -1 by 913323 913354 913360 913343 913362

So here we go. The removal of mysql-connector-java is currently blocked
by five bugs. I have submitted patches for four of them and I will take
care of netbeans myself. I'm confident we can resolve this issue before
Buster freezes.

Status in a nutshell:

osmosis #913307 FIXED
igv #913323 PATCH
pegasus-wms FIXED
jameica FIXED
lucene-solr FIXED
sqlline FIXED
libreoffice-canzeley-client #913354 PATCH
libreoffice-base-drivers #913360 PATCH
jython FIXED
jclic #913343 PATCH
netbeans #913362 UNFIXED

Cheers,

Markus

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 963 bytes
Desc: OpenPGP digital signature
URL: <http://alioth-lists.debian.net/pipermail/pkg-java-maintainers/attachments/20181109/420990b6/attachment.sig>


More information about the pkg-java-maintainers mailing list