Hello

On 2005-07-25 Moritz Muehlenhoff wrote:
> MySQL bundles a copy of zlib, which is vulnerable to DoS and potential
> arbitrary code execution due to a buffer overflow in the inflate function.

The bundled zlib version is not used if I interpret the output of
"./configure" and "ldd /usr/sbin/mysqld" correctly.

Please tell me if you found any evidence that my findings are wrong.
For Unstable the new version will be installed as soon as ftp-master is
back again, anyway but Sarge would need an DSA in this case.

bye,

-christian-



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to