Format: 1.8 Date: Tue, 02 Apr 2013 12:24:32 +0200 Source: postgresql-9.1 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-9.1 postgresql-9.1-dbg postgresql-client-9.1 postgresql-server-dev-9.1 postgresql-doc-9.1 postgresql-contrib-9.1 postgresql-plperl-9.1 postgresql-plpython-9.1 postgresql-pltcl-9.1 Architecture: powerpc powerpc_translations Version: 9.1.9-0ubuntu11.10 Distribution: oneiric Urgency: low Maintainer: Ubuntu/powerpc Build Daemon Changed-By: Martin Pitt Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 9.1 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-9.1 - object-relational SQL database, version 9.1 server postgresql-9.1-dbg - debug symbols for postgresql-9.1 postgresql-client-9.1 - front-end programs for PostgreSQL 9.1 postgresql-contrib-9.1 - additional facilities for PostgreSQL postgresql-doc-9.1 - documentation for the PostgreSQL database management system postgresql-plperl-9.1 - PL/Perl procedural language for PostgreSQL 9.1 postgresql-plpython-9.1 - PL/Python procedural language for PostgreSQL 9.1 postgresql-pltcl-9.1 - PL/Tcl procedural language for PostgreSQL 9.1 postgresql-server-dev-9.1 - development files for PostgreSQL 9.1 server-side programming Launchpad-Bugs-Fixed: 1163184 Changes: postgresql-9.1 (9.1.9-0ubuntu11.10) oneiric-security; urgency=low . * New upstream security/bug fix release: (LP: #1163184) - Fix insecure parsing of server command-line switches. A connection request containing a database name that begins with "-" could be crafted to damage or destroy files within the server's data directory, even if the request is eventually rejected. [CVE-2013-1899] - Reset OpenSSL randomness state in each postmaster child process. This avoids a scenario wherein random numbers generated by "contrib/pgcrypto" functions might be relatively easy for another database user to guess. The risk is only significant when the postmaster is configured with ssl = on but most connections don't use SSL encryption. [CVE-2013-1900] - Make REPLICATION privilege checks test current user not authenticated user. An unprivileged database user could exploit this mistake to call pg_start_backup() or pg_stop_backup(), thus possibly interfering with creation of routine backups. [CVE-2013-1901] - Fix GiST indexes to not use "fuzzy" geometric comparisons when it's not appropriate to do so. The core geometric types perform comparisons using "fuzzy" equality, but gist_box_same must do exact comparisons, else GiST indexes using it might become inconsistent. After installing this update, users should "REINDEX" any GiST indexes on box, polygon, circle, or point columns, since all of these use gist_box_same. - Fix erroneous range-union and penalty logic in GiST indexes that use "contrib/btree_gist" for variable-width data types, that is text, bytea, bit, and numeric columns. These errors could result in inconsistent indexes in which some keys that are present would not be found by searches, and also in useless index bloat. Users are advised to "REINDEX" such indexes after installing this update. - Fix bugs in GiST page splitting code for multi-column indexes. These errors could result in inconsistent indexes in which some keys that are present would not be found by searches, and also in indexes that are unnecessarily inefficient to search. Users are advised to "REINDEX" multi-column GiST indexes after installing this update. - See HISTORY/changelog.gz for details about the other bug fixes. Checksums-Sha1: 71d840606a831b608f0a7e12892a26a1e2ce060a 209190 libpq-dev_9.1.9-0ubuntu11.10_powerpc.deb e799e732f5ae272d2134e4842ebcca9b98912e0c 95258 libpq5_9.1.9-0ubuntu11.10_powerpc.deb 3ccac81f6088ac62c0eae99e5869b4529140aa03 39222 libecpg6_9.1.9-0ubuntu11.10_powerpc.deb 35bb57c3078013b7c32599e3069333069f17bb79 261682 libecpg-dev_9.1.9-0ubuntu11.10_powerpc.deb 6d8683b44a9d9f6eea2c3cddf13e7e6fd91f881a 11598 libecpg-compat3_9.1.9-0ubuntu11.10_powerpc.deb 711e9a7a6e43888097fe9c7bf5f28839bda271a0 55674 libpgtypes3_9.1.9-0ubuntu11.10_powerpc.deb 105c336e1d6efef87aff16f5fd523709d68524e0 4586890 postgresql-9.1_9.1.9-0ubuntu11.10_powerpc.deb fbfbd166e5aad1c7eeed4029a5da371562245b98 8617922 postgresql-9.1-dbg_9.1.9-0ubuntu11.10_powerpc.deb 7a6848620cdb9ee193c42aa247ac93e255b49655 964050 postgresql-client-9.1_9.1.9-0ubuntu11.10_powerpc.deb 9d17d5afed3d96ffc73d677c0fa391420e602a06 696426 postgresql-server-dev-9.1_9.1.9-0ubuntu11.10_powerpc.deb 8d32e2a06e71ded977d9d0281bfded4ac01f41d4 436846 postgresql-contrib-9.1_9.1.9-0ubuntu11.10_powerpc.deb d34b2390edae5b06b8b985026d36edc0b9606a34 65000 postgresql-plperl-9.1_9.1.9-0ubuntu11.10_powerpc.deb 9f423f8c54de71e6231aa6e97abe90dcde21dd73 58040 postgresql-plpython-9.1_9.1.9-0ubuntu11.10_powerpc.deb feedecb4d5bb794344fa7f489ee038285c41ec8f 40970 postgresql-pltcl-9.1_9.1.9-0ubuntu11.10_powerpc.deb 37afe02b1c804993a48203817c07c96644c2d1c6 5107906 postgresql-9.1_9.1.9-0ubuntu11.10_powerpc_translations.tar.gz Checksums-Sha256: 9f734437d2c93001d22b33255dd591157a4a16aea41d5bbabf14bb53c7f8eeed 209190 libpq-dev_9.1.9-0ubuntu11.10_powerpc.deb d925be62c1d3c02caa9315cc7b47f5ff5d64fcc158520009b512f1c5c68a0799 95258 libpq5_9.1.9-0ubuntu11.10_powerpc.deb 0634c112707caac0594b7c5a42f8657ad7b62a8e1b6d9a9b073f640c0e931c2f 39222 libecpg6_9.1.9-0ubuntu11.10_powerpc.deb cab4c67ad9e77ec6fef9450f18b85c21322963ea100fe8c1ed5852bb5f21d036 261682 libecpg-dev_9.1.9-0ubuntu11.10_powerpc.deb cdd58a4bc836e1d59f8be4b124d4432d1913e47cb34ae7dd7e00c5bb0d184d85 11598 libecpg-compat3_9.1.9-0ubuntu11.10_powerpc.deb b5d08ca801c7f456f06db0cb049ebe183019c167d0fbbc3e02d3910fff293d2f 55674 libpgtypes3_9.1.9-0ubuntu11.10_powerpc.deb 30b64df30ecdf5eee7a64cfbe8ba22eb5565bf0aca4953550d2a6fb786a24925 4586890 postgresql-9.1_9.1.9-0ubuntu11.10_powerpc.deb 33ee9578f0a0fb51e42a1e28b6fcecf575f6bf042c31424e6d44f13a2a2d4b04 8617922 postgresql-9.1-dbg_9.1.9-0ubuntu11.10_powerpc.deb ef7dd1fcf55bbf0b6adb02b61d295a8908d4420cf32d7a1bb767a09a374034eb 964050 postgresql-client-9.1_9.1.9-0ubuntu11.10_powerpc.deb 70ed2e1c74d12272c9d2b2149e139536baa7ad990b864135c7cc6d278412a1e0 696426 postgresql-server-dev-9.1_9.1.9-0ubuntu11.10_powerpc.deb eade05946ca9bef507f417f60420ef21f89f1a2293cbf5d6bc48b7e7ed2e5ad6 436846 postgresql-contrib-9.1_9.1.9-0ubuntu11.10_powerpc.deb 7f77aea6b2aa189b4e64b9477530a48e4e6773eaaadca37f6b06f96f2d4a7eed 65000 postgresql-plperl-9.1_9.1.9-0ubuntu11.10_powerpc.deb d6abb1f8a8eb5dc44cf6851bd7b9c172760e24512da1a9ba35fd7b092a43306a 58040 postgresql-plpython-9.1_9.1.9-0ubuntu11.10_powerpc.deb 189ceacd21c94158efc5dd6f86e182322082e4e120df0b4d81a01cb39c287ba6 40970 postgresql-pltcl-9.1_9.1.9-0ubuntu11.10_powerpc.deb ae08bf81883a13168ae404c7164929fdc8b28e96c7378387a64e215b1236a45d 5107906 postgresql-9.1_9.1.9-0ubuntu11.10_powerpc_translations.tar.gz Files: e5ea608f94e4807a8a4526e44c79ed61 209190 libdevel optional libpq-dev_9.1.9-0ubuntu11.10_powerpc.deb f7bf0bc7ef7c452f6de4dfddf32fdaf3 95258 libs optional libpq5_9.1.9-0ubuntu11.10_powerpc.deb cbf4f1ecafbd0f39fe07be17f5577c43 39222 libs optional libecpg6_9.1.9-0ubuntu11.10_powerpc.deb dea19d89ff37101dd9814431662d074f 261682 libdevel optional libecpg-dev_9.1.9-0ubuntu11.10_powerpc.deb b90439b987db7d04c28bea2d8160952c 11598 libs optional libecpg-compat3_9.1.9-0ubuntu11.10_powerpc.deb 1c6c3feb12d706b37949558b906a57a2 55674 libs optional libpgtypes3_9.1.9-0ubuntu11.10_powerpc.deb 58d63781a600de6d3e1b3fcd5e0feb16 4586890 database optional postgresql-9.1_9.1.9-0ubuntu11.10_powerpc.deb 3a9f9ef19280b69d3f514a92385fcf81 8617922 debug extra postgresql-9.1-dbg_9.1.9-0ubuntu11.10_powerpc.deb 72fd6deb62753ca41c6310d8ae5560af 964050 database optional postgresql-client-9.1_9.1.9-0ubuntu11.10_powerpc.deb 3b992afeea893d5756098971b3430235 696426 libdevel optional postgresql-server-dev-9.1_9.1.9-0ubuntu11.10_powerpc.deb 2feffb1fd35da42ee9b19c8735c0abdd 436846 database optional postgresql-contrib-9.1_9.1.9-0ubuntu11.10_powerpc.deb 30596347dca63d78246cbd8c4251b9ad 65000 database optional postgresql-plperl-9.1_9.1.9-0ubuntu11.10_powerpc.deb 4be66ae02b26137674362accdb170210 58040 database optional postgresql-plpython-9.1_9.1.9-0ubuntu11.10_powerpc.deb 89957348badb7d0b91cd390d7c5ea218 40970 database optional postgresql-pltcl-9.1_9.1.9-0ubuntu11.10_powerpc.deb 4c76ade78274e9ffcd3e6683dd0ca54e 5107906 raw-translations - postgresql-9.1_9.1.9-0ubuntu11.10_powerpc_translations.tar.gz Original-Maintainer: Martin Pitt