Firebird 2.1.3 package is now in #Gentoo #Linux #Portage
Here is the ChangeLog for Firebird 2.1.3 package in Gentoo :
Bump to 2.1.2, mostly fixes #264955. Thanks to Vladimir, John W. Higgins and all the testers in the bug.
Here is the ChangeLog for Firebird 2.1.3 package in Gentoo :
Bump to 2.1.2, mostly fixes #264955. Thanks to Vladimir, John W. Higgins and all the testers in the bug.
There is an grave security bug in firebird package 2.0 from debian and ubuntu
where an user can connect to the server with SYSDBA and NO password
The bug is now fixed in debian sid (unstable)
http://packages.debian.org/sid/firebird2.0-super
and here is the changelog
firebird2.0-super.init: stop exporting ISC_USER and ISC_PASSWORD.
Fixes a hole causing remote connections as user SYSDBA to succeed
without giving a password.
Closes: #481389 and CVE-2008-1880
Firebird allows remote connections to the administrative account without verifying credentials.
The appliance is based on an unspecified hardware platform from MBX running Gentoo Linux, the Apache web server, PHP scripting, and the open source Firebird SQL database.
Flamerobin 0.8.6 is now accepted in the official ubuntu 8.04 hardy repository
http://packages.ubuntu.com/hardy/utils/flamerobin
here is the distro list where flamerobin 0.8.6 is included
Debian http://packages.debian.org/lenny/flamerobin
Gentoo http://gentoo-portage.com/dev-db/flamerobin
Here is the full change log with security fixes for 2.0.x in gentoo portage system
Multiple stack-based buffer overflows were discovered and patched in Firebird on gentoo.
If you have an firebird version that is < 2.0.3 is recommended to upgrade