Ubuntu

“postgresql-8.3” 8.3.23-0ubuntu8.04.1 source package in The Hardy Heron

Publishing history

8.3.23-0ubuntu8.04.1
PUBLISHED: Hardy pocket Updates in component main and section misc
  • Published on 2013-04-04
  • Copied from ubuntu hardy in Private PPA for Ubuntu Security Team by Ubuntu Archive Robot
8.3.23-0ubuntu8.04.1
PUBLISHED: Hardy pocket Security in component main and section misc
  • Published on 2013-04-04
  • Copied from ubuntu hardy in Private PPA for Ubuntu Security Team by Marc Deslauriers

Builds

Changelog

postgresql-8.3 (8.3.23-0ubuntu8.04.1) hardy-security; urgency=low

  * Add 15-ssl-init-state.patch: Reset OpenSSL randomness state in each
    postmaster child process. This avoids a scenario wherein random numbers
    generated by "contrib/pgcrypto" functions might be relatively easy for
    another database user to guess.  The risk is only significant when the
    postmaster is configured with ssl = on but most connections don't use SSL
    encryption. Patch backported from 8.4.17. [CVE-2013-1900] (LP: #1163184)
 -- Martin Pitt <email address hidden>   Tue, 02 Apr 2013 12:59:28 +0200