[debian-mysql] Bug#821100: MySQL 5.5.49 for Oracle April 2016 CPU

Salvatore Bonaccorso carnil at debian.org
Wed Apr 20 06:20:56 UTC 2016

Hi Lars,

On Tue, Apr 19, 2016 at 12:27:51PM -0700, Lars Tangvald wrote:
> We've prepared MySQL 5.5.49 packages for Debian Wheezy and Jessie
> with fixes for the CVEs listed in Oracle's April CPU.
> The packages are built and tested and should be ready for upload,
> and I've attached the debdiff output for review.
> Of note is that due to upstream source changes we needed to remake a
> patch that was added for 5.5.46 to fix arm and powerpc build
> failures. New patch is larger, but should have the same behavior.


Assuming some additional tests apart the testsuite have been done,
please proceed with the update (but with the following small change).

Use 5.5.49-0+deb7u1 instead of 5.5.49-0+deb7u1.1 for the version,
respectively 5.5.49-0+deb8u1 instead of 5.5.49-0+deb8u1.1.

Please remember to build the first upload for security master with -sa
to include the original source, then the second one without -sa.[*].

I (or someone else of the team) will release the DSA once the builds
are available.

Thanks already for your work on this update,


 [*] since you (your sponsor) will not get a dak accepted mail, please
 either wait ~15 Minutes for the second upload to wait the first one
 is correctly processed or drop in in #debian-security to shortly
 confirm (or via mail is as well fine).
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-mysql-maint/attachments/20160420/818805ad/attachment-0001.sig>

More information about the pkg-mysql-maint mailing list