Mandrake Linux Security Advisory : MySQL (MDKSA-2006:158)
Low Nessus Plugin ID 23902
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionMySQL before 4.1.13 allows local users to cause a denial of service (persistent replication slave crash) via a query with multiupdate and subselects. (CVE-2006-4380)
There is a bug in the MySQL-Max (and MySQL) init script where the script was not waiting for the mysqld daemon to fully stop. This impacted the restart behavior during updates, as well as scripted setups that temporarily stopped the server to backup the database files. (Bug #15724)
The Corporate 3 and MNF2 products are not affected by these issues.
Packages have been patched to correct these issues.
SolutionUpdate the affected packages.