Re: [Maria-discuss] Latest round of Oracle CVE status on MariaDB

2015-08-13 Thread Sergei Golubchik
Hi, Brian! Thanks. I've updated the security page now. I think that CVE-2015-4757 is fixed in 5.5.43 (and 10.0.18), and CVE-2015-4752 CVE-2015-2648 CVE-2015-2643 CVE-2015-2582 are fixed in 5.5.44 (and 10.0.20). While I cannot be sure what CVE-2015-4737 and CVE-2015-2620 are about, I susp

[Maria-discuss] Latest round of Oracle CVE status on MariaDB

2015-08-13 Thread Brian Evans
The quarterly CVE list from oracle was published[1]. The following CVEs are listed there affecting 5.5, but not listed on the MariaDB security page[2]. CVE-2015-4757 CVE-2015-4752 CVE-2015-4737 CVE-2015-2648 CVE-2015-2643 CVE-2015-2620 CVE-2015-2582 Are they fixed with 5.5.45 and 10.0.21, or an