[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] MySQL Install - Can't set root password



on 4/26/00 11:37 AM, Fathi Said at fathi@xxxxxx wrote:

> Paul,
> 
> 
>> No! Don't do that! 3.22.x has a big security hole. You need 3.22.30 or
>> greater. (3.22.32 is the latest version.)
> 
> Can you tell me, what is the security hole? Thank you.

Pretty much anyone can bypass the MySQL user/password security.

Its a big deal--I don't remember the exact specifics.  Check out BugTraq or
MySQL.com for additional information.

> Also, what if I have the old version already installed (including some
> databases) and want to install the new, safer version by following the
> instructions on your site?

You should be able to use the rpm -Uvh option with Orien's new RPMs.

-k