-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 29 May 2025 22:11:53 +0200 Source: mydumper Binary: mydumper mydumper-dbgsym Architecture: armhf Version: 0.10.1-1+deb12u2 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-conova-03) Changed-By: Lee Garrett Description: mydumper - High-performance MySQL backup tool Changes: mydumper (0.10.1-1+deb12u2) bookworm; urgency=medium . * Non-maintainer upload by the Debian LTS team. * Fix CVE-2025-30224: - The MySQL C client library (libmysqlclient) allows authenticated remote actors to read arbitrary files from client systems via a crafted server response to LOAD LOCAL INFILE query, leading to sensitive information disclosure when clients connect to untrusted MySQL servers without explicitly disabling the local infile capability. Mydumper had the local infile option enabled by default and does not have an option to disable it. This can lead to an unexpected arbitrary file read if the Mydumper tool connects to an untrusted server. * Add autopkgtest integration tests * Add debian/gbp.conf Checksums-Sha1: 4ca58af51ce21bd6385edc78a229bb7ea382aa41 115736 mydumper-dbgsym_0.10.1-1+deb12u2_armhf.deb fdbd2c536f6c7d71456a8326dbfb27da7dfc3248 9511 mydumper_0.10.1-1+deb12u2_armhf-buildd.buildinfo b7c135bc5ec0b98915c2ccccb3dfd22f05acd99d 41860 mydumper_0.10.1-1+deb12u2_armhf.deb Checksums-Sha256: 2ee5e5c6475df45f785d4104a3c510cc1c8684981d27789c9b341ba0324f6feb 115736 mydumper-dbgsym_0.10.1-1+deb12u2_armhf.deb 00c75cf15a479779658d64c0f1f8f9b9bfb702a4f9a473fbc9628569cc592827 9511 mydumper_0.10.1-1+deb12u2_armhf-buildd.buildinfo c2a4a241e0ac304994b62d7df0565654d0d124b88c102801b6a74109e27da268 41860 mydumper_0.10.1-1+deb12u2_armhf.deb Files: 803140f7b5ed5c2a17261c279f6263f1 115736 debug optional mydumper-dbgsym_0.10.1-1+deb12u2_armhf.deb 2f8e419cf670f56e6a05bd4227f06522 9511 database extra mydumper_0.10.1-1+deb12u2_armhf-buildd.buildinfo bb1b0ae7730cd1ef2cbb9a2fb128b1f4 41860 database extra mydumper_0.10.1-1+deb12u2_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEVM4SKBZumztS8zr3lST9Us03ywsFAmjB73YACgkQlST9Us03 ywtK9w//W7/+vN+HWEV0hC6wwcTvibDM0+ttGhCVSnNSVsgCXV0O10esPkCMKqrd HTOTnRIx/b0xM6B61Bqf05RSY0hjo3P9gd230Am4Rdc/yk8gkXmj27OSq+UMgdUT 1dSTueFAn3Of0rhG1h3n6ajLmADKXLSgTTHw5cGZEjQSo5PzGNFRkncXYSvbXFG9 uhWA//zqCVkaiQQ/AlNVPa26aYiUtmYPGHiLRpA6v8z67vMSgH7lUa+38R6eedre DpDUyqUdlP/O+GZs+hYpYMMc4IBOeeGZlwT7iLJf5N5gTIokij7RNVi9UbfOTfr+ iaUlA5lChBAsW6fg/8k7ZNMhRQ7S0qdUibz2f60S5y7Ejlx3dllt6ne+H2Qgk8fZ IjlStErZNEOxzxFVwfqqg/3I47vD2aOOGir0fe442TrgXgv6mFbeKpDQc+mAMZkt I/DwHZdbu2Be+rWTIiGCUfcMo+2DPygS5MEm8oR+jbE1JUUd3ETZvkTgs93yb8qS LEs2w+zoq1kvvQee/i5Lt4cGfErq2/AElBCmSYTsZDj1ius2bLFi6xhUKYZpRWDo jaNE/JKOQ4aE7fxef++rSUjscX02/qaS2nT6N5Pm4ub0gqMLxbWLSXT+PeedIFr1 V2tRSktbPQiYAphfKzUImQgoXDqeXIdxp2dHYY7s7SCfCy4yuoI= =W7TG -----END PGP SIGNATURE-----