changelog 11.4 KB
Newer Older
1
2
3
mariadb-10.0 (10.0.21-2) UNRELEASED; urgency=low

  * Update gdb.conf to have tags signed by default
4
  * Add CVE IDs to previous changelog entries
5
6
7

 -- Otto Kekäläinen <otto@seravo.fi>  Wed, 26 Aug 2015 18:20:54 +0300

Tobias Frost's avatar
Tobias Frost committed
8
mariadb-10.0 (10.0.21-1) experimental; urgency=low
Otto Kekäläinen's avatar
Otto Kekäläinen committed
9

10
  [ Otto Kekäläinen ]
11
  * Created libmariadbd18 and moved .so file from libmariadbd-dev there
12
  * Reproducible build improvement: Add LC_ALL=C to mysql.sym sort command
13
  * New upstream release.
14
15
    - Upstream added skip_log_error to mysqld_safe config (Closes: #781945)
    - Diffie-Helman modulus increased to 2048-bits (Closes: #788905)
16
17
18
19
  * Split mariadb-test-data-10.0 out of the main test package. This will save
    disk space in Debian archives as the arch independent data files are
    in one single package that can be used on all platforms and the package
    that is built on multiple platform shrinks significantly.
Otto Kekäläinen's avatar
Otto Kekäläinen committed
20

21
22
23
24
25
26
27
  [ Jean Weisbuch ]
  * The MYCHECK_RCPT variable can now be set from the default file.
  * The check_for_crashed_tables() function on the debian-start script has been
    fixed to be able to log (and email) the errors it encountered : Errors are
    sent to stderr by the CLI while only stdout was captured by the function.
  * The same function now also checks Aria tables along with MyISAM ones.

Tobias Frost's avatar
Tobias Frost committed
28
 -- Otto Kekäläinen <otto@seravo.fi>  Thu, 13 Aug 2015 10:08:38 +0200
Otto Kekäläinen's avatar
Otto Kekäläinen committed
29

30
mariadb-10.0 (10.0.20-3) unstable; urgency=medium
31
32
33
34

  [ Andreas Beckmann ]
  * mariadb-common: Depend on a version of mysql-common that ships
    /usr/share/mysql-common/configure-symlinks.  (Closes: #787533)
35
  * mariadb-common.postinst: Drop fallback my.cnf symlink management.
36
  * mariadb-common.preinst: Clean up my.cnf/my.cnf.old from the fallback.
37

Otto Kekäläinen's avatar
Otto Kekäläinen committed
38
  [ Otto Kekäläinen ]
39
40
41
42
  * Clean up old cruft from rules file after review by Sergei Golubchik
  * Unified config file layout with upstream .cnf layout
  * Recover mysql-upgrade dir/link handlig wrongly removed in f7caa041db
  * Minor Lintian and documentation fixes
43
  * Switch 'nm -n' to 'nm --defined-only' to improve reproducible builds
Otto Kekäläinen's avatar
Otto Kekäläinen committed
44
45
46
47
48
49
50
51
52
53

  [ Olaf van der Spek ]
  * Minor spell checking (Closes: #792123)

  [ Israel Tsadok ]
  * Fix mariadb-server-10.0.preinst script that failed to save a new
    /var/lib/mysql-upgrade/DATADIR.link if a previous DATADIR.link existed and
    the /var/lib/mysql directory was a symbolic link with an absolute path
    as target (Closes: #792918)

54
  [ Jean Weisbuch ]
55
56
  * Added a Debian default file for the mariadb-server-10.0 package which allows
    one to set the MYSQLD_STARTUP_TIMEOUT variable used in the init script
57

58
 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 24 Jul 2015 23:00:00 +0300
59

Otto Kekäläinen's avatar
Otto Kekäläinen committed
60
61
62
mariadb-10.0 (10.0.20-2) unstable; urgency=low

  * Fix bash test logic in postinstall (Closes: #789589)
63
64
  * Add extra sort in d/rules mysqld.sym.gz command to satisfy Debian
    reproducible build requirements
65
  * Switch to utf8mb4 as default character set
Otto Kekäläinen's avatar
Otto Kekäläinen committed
66
67
68

 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 03 Jul 2015 17:11:01 +0300

69
70
mariadb-10.0 (10.0.20-1) unstable; urgency=low

71
72
  * New upstream release. Includes fixes for the following security
    vulnerabilities:
73
74
75
76
    - CVE-2015-3152: Client command line option --ssl-verify-server-cert (and
      MYSQL_OPT_SSL_VERIFY_SERVER_CERT option of the client API) when used
      together with --ssl will ensure that the established connection is
      SSL-encrypted and the MariaDB server has a valid certificate.
77
78
79
80
81
    - CVE-2015-3152
    - CVE-2015-2648
    - CVE-2015-2582
    - CVE-2015-4752
    - CVE-2015-2643
Otto Kekäläinen's avatar
Otto Kekäläinen committed
82
  * New release includes fix for memory corruption on arm64 (Closes: #787221)
83
  * Added patch to enhance build reproducibility regarding the file INFO_BIN
84
85
86

 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 19 Jun 2015 13:01:56 +0300

87
88
mariadb-10.0 (10.0.19-1) unstable; urgency=low

89
  * New upstream release. Fixed the server crash caused by mysql_upgrade
90
91
92
93
94
    (MDEV-8115).
  * Upload to unstable from master branch as Jessie is not released.

 -- Otto Kekäläinen <otto@seravo.fi>  Sat, 09 May 2015 22:24:03 +0300

95
mariadb-10.0 (10.0.18-1~exp1) experimental; urgency=low
96

97
98
99
100
101
102
103
104
105
106
  * New upstream release. Includes fixes for the following security
    vulnerabilities:
    - CVE-2014-8964 bundled PCRE contained heap-based buffer overflow
      vulnerability that allowed the server to crash or have other unspecified
      impact via a crafted regular expression made possible with the
      REGEXP_SUBSTR function (MDEV-8006).
    - CVE-2015-0501
    - CVE-2015-2571
    - CVE-2015-0505
    - CVE-2015-0499
107
    - CVE-2015-4757
108
  * Cleanup in d/copyright
109
110
  * Make the mariadb-common depends versioned to guarantee that latest
    config files are installed
111

112
 -- Otto Kekäläinen <otto@seravo.fi>  Thu, 07 May 2015 23:21:20 +0300
113

114
mariadb-10.0 (10.0.17-1~exp2) experimental; urgency=low
115
116
117

  * d/control: Related to innochecksum manpage move, also break/replace
    the mysql-client-5.5/6 packages (Closes: #779873)
118
119
120
  * Add automatic fallback to the new /etc/mysql/my.cnf management scheme
    for cases where mysql-common/configure-symlinks is not yet available
    and users complain the installation ends up broken.
121
  * New release confirmed to build with GCC-5 (Closes: #777996)
122
123
124

 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 06 Mar 2015 16:42:21 +0200

125
mariadb-10.0 (10.0.17-1~exp1) experimental; urgency=low
126

127
128
129
130
131
132
  [ Jan Wagner ]
  * Adding mysqld_multi.server_lsb-header.patch, provides LSB headers for
    example initscript (Closes: #778762)
  * Adding mysqld_multi_confd.patch, makes mysqld_multi reading conf.d
    (Closes: #778761)

133
  [ Robie Basak ]
134
135
  * Move innochecksum back to mariadb-server-core-10.0 to align with other
    variants (LP: #1421520).
136
  * Fix typo in mariadb-server-10.0.postinst.
Robie Basak's avatar
Robie Basak committed
137
  * Fix typo in postinst mktemp call (LP: #1420831).
138

139
140
141
142
143
  [ Arnaud Fontaine ]
  * d/control: innochecksum manpage has been moved to mariadb-client-10.0 in
    10.0.13-1 (ba97056), thus add Breaks/Replaces in mariadb-client-10.0
    against mariadb-server-10.0 << 10.0.13-1~.

144
  [ Otto Kekäläinen ]
145
  * Follow to new /etc/mysql/my.cnf management scheme
146
147
148
  * Remove the my.cnf move command as it increases complexity too much and might
    emit an error code if mariadb-common is upgraded before mysql-common is.
  * Add patch to enhance build reproducibility
149
150
  * Remove /var/log/mysql.log from logrotate. Everything should be inside
    the mysql directory (/var/log/mysql/) and not directly on plain /var/log
151
152
153
154
155
156
  * New upstream release. Includes fixes for the following security
    vulnerabilities (changelog updated post release):
    - CVE-2015-2568
    - CVE-2015-2573
    - CVE-2015-0433
    - CVE-2015-0441
157

158
 -- Otto Kekäläinen <otto@seravo.fi>  Mon, 02 Mar 2015 20:01:13 +0200
159

160
161
162
mariadb-10.0 (10.0.16-1~exp3) experimental; urgency=low

  * Update the mail.ssl test to match new cacert.pem
163
164
165
166
  * Stop asking and setting a database root user password. Instead enable
    the auth_socket plugin and let unix user root access MariaDB without
    a separate password. Admins using sudo or cron scripts can use the
    same access too, and there is no debian-sys-maint password either anymore.
167
168
169

 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 30 Jan 2015 18:52:55 +0200

170
171
172
mariadb-10.0 (10.0.16-1~exp2) experimental; urgency=low

  * Fix typo in preinstall script (Closes: #776494).
173
  * Backported new cacert.pem etc from 5.5 the replace the expired ones.
174
175
176

 -- Otto Kekäläinen <otto@seravo.fi>  Wed, 28 Jan 2015 20:57:23 +0200

177
178
mariadb-10.0 (10.0.16-1~exp1) experimental; urgency=low

179
  * New upstream release. Includes fixes for the following security
180
181
182
183
184
185
186
187
188
189
    vulnerabilities:
    - CVE-2015-0411
    - CVE-2015-0382
    - CVE-2015-0381
    - CVE-2015-0432
    - CVE-2014-6568
    - CVE-2015-0374

 -- Otto Kekäläinen <otto@seravo.fi>  Tue, 27 Jan 2015 17:04:21 +0200

190
mariadb-10.0 (10.0.15-2~exp1) experimental; urgency=low
191
192
193

  * Fix mariadb-server-10.0.postinst so that the flag removal will not emit
    an error code if there are no previous debian-*.flag files. This will
194
    fix a dpkg issue caught by piuparts testing.
195
196
  * Increase the debconf downgrade warning dialog priority to critical to make
    sure all users see it and understand why their system broke after downgrade.
197
198
  * Attempt to fix FTBFS on mips, mipsel, powerpc introduced by upstream
    release 10.0.15 (Closes: #772964).
199
200
201

 -- Otto Kekäläinen <otto@seravo.fi>  Fri, 12 Dec 2014 14:07:50 +0200

202
mariadb-10.0 (10.0.15-1) unstable; urgency=low
203

204
205
206
207
  [ Arnaud Fontaine ]
  * Bump libpcre3-dev Build-Depends to >= 2:8.35-3.2~ (Closes: #767903).

  [ Otto Kekäläinen }
208
209
210
211
212
213
214
215
216
217
  * New upstream release, includes fixes for the following security issues:
    - CVE-2014-6507
    - CVE-2014-6491
    - CVE-2014-6500
    - CVE-2014-6469
    - CVE-2014-6555
    - CVE-2014-6559
    - CVE-2014-6494
    - CVE-2014-6496
    - CVE-2014-6464
218
219
  * Disable on non-amd64 platforms the new Mroonga storage engine which
    was introduced in the new upstream release.
220
221
  * Allow mariadb-server-10.0 to overwrite file man1/mysql_plugin.1.gz in
    mysql-client-5.5 with breaks and replaces (Closes: #771213).
222
223
  * Clean up old debian-*.flag files from datadir to avoid unexpected
    behavior at later upgrades (Closes: #770177).
224

225
 -- Otto Kekäläinen <otto@seravo.fi>  Tue, 25 Nov 2014 21:45:43 +0200
226

227
228
229
230
231
232
233
234
mariadb-10.0 (10.0.14-4) unstable; urgency=low

  * Updated patch d/username-in-tests-replace.patch to fix the
    obfuscation done by anti-spam measures in the MariaDB
    commit message view (Closes: #769865).
  * Unified indentantion to two spaces in init file for easier
    debugging of #609537

235
 -- Otto Kekäläinen <otto@seravo.fi>  Mon, 17 Nov 2014 11:45:11 +0200
236

237
238
239
240
mariadb-10.0 (10.0.14-3) unstable; urgency=low

  * Added patch d/username-in-tests-replace.patch to fix
    test failure (Closes: #769212).
241
  * Added versioned dependency on libpcre3 (Closes: #767903).
242
243
244

 -- Otto Kekäläinen <otto@seravo.fi>  Wed, 12 Nov 2014 15:00:11 +0300

Otto Kekäläinen's avatar
Otto Kekäläinen committed
245
mariadb-10.0 (10.0.14-2) unstable; urgency=low
246

247
248
249
  [ Tobias Frost ]
  * Fix two lintian warnings in d/copyright (missing "-" between GPL and 2)
  * Always be verbose when building the package and show compiler args
250

251
  [ Otto Kekäläinen ]
Tobias Frost's avatar
Tobias Frost committed
252
  * Upload to unstable
253
254
  * Updated German translation by Chris Leick and Holger Wansing
    (Closes: #763952)
255
  * Updated Dutch translation by Frans Spiesschaert (Closes: #764013)
256
257
258
259
  * Removed libssl-dev from build dependencies in favour of using
    bundled YaSSL instead (Closes: #761911)
  * Fixed debconf value saving (Closes: #761452)
  * Re-enabled TokuDB after backporting upstream fix in MDEV-6815
260
261
262
263
  * Removed libmariadbclient packages that provided the Debian-only
    libmariadbclient.so library that nobody used. Instead developers are
    encouraged to use the libraries from the package libmariadb-client-lgpl
    instead (Closes: #739452) (Closes: #742172).
264

Otto Kekäläinen's avatar
Otto Kekäläinen committed
265
 -- Otto Kekäläinen <otto@seravo.fi>  Sat, 18 Oct 2014 19:00:11 +0300
266

Arnaud Fontaine's avatar
Arnaud Fontaine committed
267
mariadb-10.0 (10.0.14-1) experimental; urgency=low
268

269
  * New upstream release. (Closes: #757026)
270
  * d/control: Removed Provides: libmysqlclient-dev (Closes: #759309)
271
  * d/control: Removed Provides: libmysqld-dev with same motivation
272
273
  * Updated Swedish translation by Martin Bagge
    and Anders Jonsson (Closes: #762795)
274
  * Updated Spanish translation by Javier Fernandez-Sanguino (Closes: #762751)
Otto Kekäläinen's avatar
Otto Kekäläinen committed
275
  * Updated Portuguese translation by Miguel Figueiredo (Closes: #763194)
276
  * Updated Czech translation by Miroslav Kure (Closes: #763309)
277

278
 -- Otto Kekäläinen <otto@seravo.fi>  Thu, 28 Aug 2014 00:39:02 +0300
279

280
mariadb-10.0 (10.0.10-1) experimental; urgency=low
281

282
  * Initial Upload (Closes: #740473)
283

284
 -- Otto Kekäläinen <otto@seravo.fi>  Tue, 01 Apr 2014 09:56:38 +0300