[debian-mysql] MariaDB and MySQL security releases

Otto Kekäläinen otto at seravo.fi
Thu Mar 13 19:52:42 UTC 2014


Hello,

Both MariaDB and MySQL seem to have the same policy, that they release
every second month a point release which contains the security fixes
among others.

I am still reasearching if MariaDB promises the same 8 year support
cycle as MySQL, but otherwise all the points listed at
https://lists.ubuntu.com/archives/technical-board/2014-February/001812.html
apply for MariaDB as well.

I or James should probalby file a MRE for Ubuntu
(https://wiki.ubuntu.com/StableReleaseUpdates/MicroReleaseExceptions)

Is there something similar in Debian? Didn't find by googling quickly.
Manually taking the security patches from MariaDB bzr and releasing
our own custom security updates for Debian would be quite a lot of
work, so I hope that after Debian stable (or new version of Ubuntu)
gets released I will be able to push the point releases into stable
via -updates or -security.



As a side note, if I happen to take a flight with a large groupe of
Freescale managers and the ariplane disappears, and somebody from the
security team or something needs to update the pacakge, I've
documented my workflow in the package Debian sources itself:
http://anonscm.debian.org/gitweb/?p=pkg-mysql/mariadb-10.0.git;a=blob;f=debian/README.Maintainer


-- 
Check out our blog at http://seravo.fi/blog
and follow @ottokekalainen



More information about the pkg-mysql-maint mailing list