Format: 1.7 Date: Sat, 05 Jan 2008 19:39:17 +0100 Source: postgresql-8.1 Binary: libecpg-compat2 libecpg-dev libecpg5 libpgtypes2 libpq-dev libpq4 postgresql-8.1 postgresql-client-8.1 postgresql-contrib-8.1 postgresql-doc-8.1 postgresql-plperl-8.1 postgresql-plpython-8.1 postgresql-pltcl-8.1 postgresql-server-dev-8.1 Architecture: amd64_translations amd64 i386_translations i386 all powerpc_translations powerpc source sparc_translations sparc Version: 8.1.11-0ubuntu0.6.10.1 Distribution: edgy-security Urgency: low Maintainer: Martin Pitt Changed-By: Martin Pitt Description: libecpg-compat2 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg5 - run-time library for ECPG programs libpgtypes2 - shared library libpgtypes for PostgreSQL 8.1 libpq-dev - header files for libpq4 (PostgreSQL library) libpq4 - PostgreSQL C client library postgresql-8.1 - object-relational SQL database, version 8.1 server postgresql-client-8.1 - front-end programs for PostgreSQL 8.1 postgresql-contrib-8.1 - additional facilities for PostgreSQL postgresql-plperl-8.1 - PL/Perl procedural language for PostgreSQL 8.1 postgresql-plpython-8.1 - PL/Python procedural language for PostgreSQL 8.1 postgresql-pltcl-8.1 - PL/TCL procedural language for PostgreSQL 8.1 postgresql-server-dev-8.1 - development files for PostgreSQL 8.1 server-side programming postgresql-doc-8.1 - documentation for the PostgreSQL database management system Changes: postgresql-8.1 (8.1.11-0ubuntu0.6.10.1) edgy-security; urgency=low . * New upstream security/bugfix release: - Prevent functions in indexes from executing with the privileges of the user running "VACUUM", "ANALYZE", etc. "SET ROLE" is now forbidden within a SECURITY DEFINER context. [CVE-2007-6600] - Suitably crafted regular-expression patterns could cause crashes, infinite or near-infinite looping, and/or massive memory consumption, all of which pose denial-of-service hazards for applications that accept regex search patterns from untrustworthy sources. [CVE-2007-4769, CVE-2007-4772, CVE-2007-6067] - Require non-superusers who use "/contrib/dblink" to use only password authentication, as a security measure. The fix that appeared for this in 8.2.5 was incomplete, as it plugged the hole for only some "dblink" functions. [CVE-2007-6601, CVE-2007-3278] - Fix planner failure in some cases of WHERE false AND var IN (SELECT ...). - Preserve the tablespace and storage parameters of indexes that are rebuilt by "ALTER TABLE ... ALTER COLUMN TYPE". - Make archive recovery always start a new WAL timeline, rather than only when a recovery stop time was used. This avoids a corner-case risk of trying to overwrite an existing archived copy of the last WAL segment, and seems simpler and cleaner than the original definition. - Make "VACUUM" not use all of maintenance_work_mem when the table is too small for it to be useful. - Fix potential crash in translate() when using a multibyte database encoding. - Fix overflow in extract(epoch from interval) for intervals exceeding 68 years. - Fix PL/Perl to not fail when a UTF-8 regular expression is used in a trusted function. - Fix PL/Python to not crash on long exception messages. - Fix pg_dump to correctly handle inheritance child tables that have default expressions different from their parent's. - Fix libpq crash when PGPASSFILE refers to a file that is not a plain file. - ecpg parser fixes. - Make "contrib/tablefunc"'s crosstab() handle NULL rowid as a category in its own right, rather than crashing. - Fix tsvector and tsquery output routines to escape backslashes correctly. - Fix crash of to_tsvector() on huge input strings. * Use the timezone database from the system tzdata instead of shipping our own. - debian/patches/04-timezone-symlinks.patch: Drop previous hardlink-to-symlink patch to zic, since that is irrelevant now. Replace the patch with a Makefile change that just symlinks /usr/share/zoneinfo to where postgresql previously installed its own tzdata copy. - debian/control: Add tzdata dependency. - debian/postgresql-8.1.install: Install the 'timezone' symlink, not the files in the dereferenced directory. - debian/postgresql-8.1.postinst: Replace the timezone directory with the symlink on upgrades, since dpkg does not do that automatically. Without this, we'd end up with an empty timezone directory. Files: 3030c832b400e856ad439e9ee916c3c1 327708 libdevel optional libpq-dev_8.1.11-0ubuntu0.6.10.1_amd64.deb 38aa89d1b3659c53431bcdf2939b20d3 221428 libs optional libpq4_8.1.11-0ubuntu0.6.10.1_amd64.deb 88435a015b57d9881d04eccf042f3508 188582 libs optional libecpg5_8.1.11-0ubuntu0.6.10.1_amd64.deb 902008e27f20afc98ede9cf3ad46bb62 359702 libdevel optional libecpg-dev_8.1.11-0ubuntu0.6.10.1_amd64.deb a7efbac673aa6471fcf971009b75e0fc 167656 libs optional libecpg-compat2_8.1.11-0ubuntu0.6.10.1_amd64.deb 7740b8572c6ff23a51dcee01f3a3c275 189658 libs optional libpgtypes2_8.1.11-0ubuntu0.6.10.1_amd64.deb 2dc489bee7cf4e57ddd31a9d6ec7b158 3193434 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb ea9f0a070a66f6491761c51c6046df7e 808882 misc optional postgresql-client-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb 4ac7dad31d2445a3de0fb85494245c99 613182 libdevel optional postgresql-server-dev-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb 1ee5b4c79aced5b6c341c9caebe634e0 635932 misc optional postgresql-contrib-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb e434c43e183163d6986502d72b7847c3 184288 misc optional postgresql-plperl-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb d56ff9c8c876c14628ae15c8fa106a4e 178354 misc optional postgresql-plpython-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb b285d06696be0817b696e74d75d0d5d3 178776 misc optional postgresql-pltcl-8.1_8.1.11-0ubuntu0.6.10.1_amd64.deb 94ce8a63653e6b1f3233b351292f2990 4117662 raw-translations - postgresql-8.1_8.1.11-0ubuntu0.6.10.1_amd64_translations.tar.gz 276ad15dda462358f2afa975b9a992ec 1476862 doc optional postgresql-doc-8.1_8.1.11-0ubuntu0.6.10.1_all.deb 9140f33f3b00e135d77800c3a32d3b44 321004 libdevel optional libpq-dev_8.1.11-0ubuntu0.6.10.1_i386.deb 5da3a6ea3365a1c06f732c67f38efc9a 217518 libs optional libpq4_8.1.11-0ubuntu0.6.10.1_i386.deb 1312358de769700da0b8539884d11436 187386 libs optional libecpg5_8.1.11-0ubuntu0.6.10.1_i386.deb ce1e349c576575ed621da56a72b8bfa2 356704 libdevel optional libecpg-dev_8.1.11-0ubuntu0.6.10.1_i386.deb 9292cc502d8693eeb8782783ea72b7be 166920 libs optional libecpg-compat2_8.1.11-0ubuntu0.6.10.1_i386.deb 09fcc79c5f16d674631368c34e5b7c89 189418 libs optional libpgtypes2_8.1.11-0ubuntu0.6.10.1_i386.deb fdf42f2f8fbb0d61083bac027d26399a 3093370 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb f42ddc9ed6b6a786f058770167b22612 778140 misc optional postgresql-client-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb cb9c992b2ed694105fcdd1ee5229cf17 613178 libdevel optional postgresql-server-dev-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb e96db3673ad6746e16e3f244102e1109 604098 misc optional postgresql-contrib-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb e56f686093a3f8d6b665c67ca9abd989 183168 misc optional postgresql-plperl-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb bf4c74cd7d9c3b84c7823760e2d1caca 176374 misc optional postgresql-plpython-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb d4eb77c6dd454c4a855c9c107b1d8d18 177670 misc optional postgresql-pltcl-8.1_8.1.11-0ubuntu0.6.10.1_i386.deb f223099b8340f669d15edc71bfbf17ce 4117620 raw-translations - postgresql-8.1_8.1.11-0ubuntu0.6.10.1_i386_translations.tar.gz 1e6bef756a0f56012f339f230118d1b5 323134 libdevel optional libpq-dev_8.1.11-0ubuntu0.6.10.1_powerpc.deb 372e7f521b0c24646082195f89ff0c77 219576 libs optional libpq4_8.1.11-0ubuntu0.6.10.1_powerpc.deb 7fab7956094c3e5f3e298298ab89846b 189518 libs optional libecpg5_8.1.11-0ubuntu0.6.10.1_powerpc.deb 0790de669714dc1e072009fc02e1b4bc 353944 libdevel optional libecpg-dev_8.1.11-0ubuntu0.6.10.1_powerpc.deb 92f16f9f28f83235c6030298ba8b3b08 168422 libs optional libecpg-compat2_8.1.11-0ubuntu0.6.10.1_powerpc.deb 2e8f7942c8d2083478c034104b24b1f3 192774 libs optional libpgtypes2_8.1.11-0ubuntu0.6.10.1_powerpc.deb 3ff251dfc70c03d90b462504ca2e8963 3496106 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 3d3dfce4d3139046e313de90ffa8e9b7 819834 misc optional postgresql-client-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 05a8f6d7540e314a8927a4d681899ac1 613182 libdevel optional postgresql-server-dev-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 7d1a04dd80ae27f54d87c209c8775c9e 657182 misc optional postgresql-contrib-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 027dbdf33d6561f3495fd0bf3a61d6f3 184096 misc optional postgresql-plperl-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 341df6219dc23187054ae6ca6cca6383 178616 misc optional postgresql-plpython-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb e292ca530666e43fa92979f556214df0 179672 misc optional postgresql-pltcl-8.1_8.1.11-0ubuntu0.6.10.1_powerpc.deb 38a4f3b75807c59e748c5030a2b73803 4126043 raw-translations - postgresql-8.1_8.1.11-0ubuntu0.6.10.1_powerpc_translations.tar.gz c3f644223b19a277778f269e77a9fe9a 1189 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1.dsc 9eadd7e16f547a8ce1e0eec5de96632e 11444400 misc optional postgresql-8.1_8.1.11.orig.tar.gz 0a9e53f802cb531b215622e82fd43b98 34785 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1.diff.gz 18e512d29501b4dcd6d672b57c4f4c35 320382 libdevel optional libpq-dev_8.1.11-0ubuntu0.6.10.1_sparc.deb 99da0d4633e6cbd4c57f9966bba0ccbe 215948 libs optional libpq4_8.1.11-0ubuntu0.6.10.1_sparc.deb 2575b68422657da86b7141e551d6086c 186970 libs optional libecpg5_8.1.11-0ubuntu0.6.10.1_sparc.deb d597821071a5dfa953b6478b9a1bf3fd 350194 libdevel optional libecpg-dev_8.1.11-0ubuntu0.6.10.1_sparc.deb 468349b447deaa0130a7bb94325db5cc 166206 libs optional libecpg-compat2_8.1.11-0ubuntu0.6.10.1_sparc.deb 6796865360c573b3dd81c76da01bf3e5 187730 libs optional libpgtypes2_8.1.11-0ubuntu0.6.10.1_sparc.deb c57656b0a8f71afaec023ae383bfc405 3424884 misc optional postgresql-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb acb0fe04e728a92cd0bd70a6d48613c2 793182 misc optional postgresql-client-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb 7fdae4c3f1b606ba2342acbe74d94585 613172 libdevel optional postgresql-server-dev-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb 8085fd9eed9275165c4c6e07ba0c794c 615924 misc optional postgresql-contrib-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb 2de01a85e5a6266fdb4453c4eedf3f6e 182690 misc optional postgresql-plperl-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb 8a4a302312a84d3d9ed4a8e1a6a3928a 176964 misc optional postgresql-plpython-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb 12cefd9544cdca2176ecd2d6cfb9e145 177716 misc optional postgresql-pltcl-8.1_8.1.11-0ubuntu0.6.10.1_sparc.deb e55999be265e9e8357093e41d7f4daf5 4127556 raw-translations - postgresql-8.1_8.1.11-0ubuntu0.6.10.1_sparc_translations.tar.gz