.:[ packet storm ]:.
                           
honesty is the best policy
honesty is the best policy

 ///  File Name:USN-671-1.txt
Description:
Ubuntu Security Notice USN-671-1 - It was discovered that MySQL could be made to overwrite existing table files in the data directory. An authenticated user could use the DATA DIRECTORY and INDEX DIRECTORY options to possibly bypass privilege checks. This update alters table creation behavior by disallowing the use of the MySQL data directory in DATA DIRECTORY and INDEX DIRECTORY options. It was discovered that MySQL did not handle empty bit-string literals properly. An attacker could exploit this problem and cause the MySQL server to crash, leading to a denial of service.
Homepage:http://security.ubuntu.com/
File Size:14865
Related CVE(s):CVE-2008-2079, CVE-2008-3963, CVE-2008-4097, CVE-2008-4098
Last Modified:Nov 17 21:23:59 2008
MD5 Checksum:39c3cf301a96c689c184b762d83dedd8

 .:. Back