Format: 1.8 Date: Tue, 02 Apr 2013 11:59:41 +0200 Source: postgresql-9.1 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-9.1 postgresql-9.1-dbg postgresql-client-9.1 postgresql-server-dev-9.1 postgresql-doc-9.1 postgresql-contrib-9.1 postgresql-plperl-9.1 postgresql-plpython-9.1 postgresql-plpython3-9.1 postgresql-pltcl-9.1 Architecture: armhf armhf_translations Version: 9.1.9-0ubuntu12.04 Distribution: precise Urgency: low Maintainer: Ubuntu/armhf Build Daemon Changed-By: Martin Pitt Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 9.1 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-9.1 - object-relational SQL database, version 9.1 server postgresql-9.1-dbg - debug symbols for postgresql-9.1 postgresql-client-9.1 - front-end programs for PostgreSQL 9.1 postgresql-contrib-9.1 - additional facilities for PostgreSQL postgresql-doc-9.1 - documentation for the PostgreSQL database management system postgresql-plperl-9.1 - PL/Perl procedural language for PostgreSQL 9.1 postgresql-plpython-9.1 - PL/Python procedural language for PostgreSQL 9.1 postgresql-plpython3-9.1 - PL/Python 3 procedural language for PostgreSQL 9.1 postgresql-pltcl-9.1 - PL/Tcl procedural language for PostgreSQL 9.1 postgresql-server-dev-9.1 - development files for PostgreSQL 9.1 server-side programming Launchpad-Bugs-Fixed: 1163184 Changes: postgresql-9.1 (9.1.9-0ubuntu12.04) precise-security; urgency=low . * New upstream security/bug fix release: (LP: #1163184) - Fix insecure parsing of server command-line switches. A connection request containing a database name that begins with "-" could be crafted to damage or destroy files within the server's data directory, even if the request is eventually rejected. [CVE-2013-1899] - Reset OpenSSL randomness state in each postmaster child process. This avoids a scenario wherein random numbers generated by "contrib/pgcrypto" functions might be relatively easy for another database user to guess. The risk is only significant when the postmaster is configured with ssl = on but most connections don't use SSL encryption. [CVE-2013-1900] - Make REPLICATION privilege checks test current user not authenticated user. An unprivileged database user could exploit this mistake to call pg_start_backup() or pg_stop_backup(), thus possibly interfering with creation of routine backups. [CVE-2013-1901] - Fix GiST indexes to not use "fuzzy" geometric comparisons when it's not appropriate to do so. The core geometric types perform comparisons using "fuzzy" equality, but gist_box_same must do exact comparisons, else GiST indexes using it might become inconsistent. After installing this update, users should "REINDEX" any GiST indexes on box, polygon, circle, or point columns, since all of these use gist_box_same. - Fix erroneous range-union and penalty logic in GiST indexes that use "contrib/btree_gist" for variable-width data types, that is text, bytea, bit, and numeric columns. These errors could result in inconsistent indexes in which some keys that are present would not be found by searches, and also in useless index bloat. Users are advised to "REINDEX" such indexes after installing this update. - Fix bugs in GiST page splitting code for multi-column indexes. These errors could result in inconsistent indexes in which some keys that are present would not be found by searches, and also in indexes that are unnecessarily inefficient to search. Users are advised to "REINDEX" multi-column GiST indexes after installing this update. - See HISTORY/changelog.gz for details about the other bug fixes. Checksums-Sha1: 1b0cfb345dd0e1282f5ce2e0a540f00c1cc02760 193066 libpq-dev_9.1.9-0ubuntu12.04_armhf.deb 6e8cbb4db3b98579cf70b63aebd8df5b6797fc46 80932 libpq5_9.1.9-0ubuntu12.04_armhf.deb c3f4410ee6e1efdd54feeadfcd42b371259893ae 34002 libecpg6_9.1.9-0ubuntu12.04_armhf.deb eb888c77aaec69c9caa7c018a16de44efeed0110 239404 libecpg-dev_9.1.9-0ubuntu12.04_armhf.deb 62c91f479c7fa826b41f80010cd8d6a888461d74 10682 libecpg-compat3_9.1.9-0ubuntu12.04_armhf.deb c63b3e9e3eccf5ba90db3f0aeb4eb7ec3984aa00 47898 libpgtypes3_9.1.9-0ubuntu12.04_armhf.deb 1e85aae6243f815848d980d4d38099eca22854de 3978092 postgresql-9.1_9.1.9-0ubuntu12.04_armhf.deb c55dea1f455340addb93fe061877c2ae445a453a 8292610 postgresql-9.1-dbg_9.1.9-0ubuntu12.04_armhf.deb 03da51749b740b63b7cebde2a30a309054c7f6ca 894828 postgresql-client-9.1_9.1.9-0ubuntu12.04_armhf.deb 98b5bbc7c9cbd7b6960121590768931d5cc40a3f 678150 postgresql-server-dev-9.1_9.1.9-0ubuntu12.04_armhf.deb d21b9c61509e2253a742d824a7f3e0c56d2dfd7b 390950 postgresql-contrib-9.1_9.1.9-0ubuntu12.04_armhf.deb 37bb06dad81d4ca1ce1418f522684b3a1b69ee76 42240 postgresql-plperl-9.1_9.1.9-0ubuntu12.04_armhf.deb c49efc551ba97780a634e9a5b2c8a57852894fb0 37160 postgresql-plpython-9.1_9.1.9-0ubuntu12.04_armhf.deb ec03afb0493b4e1c3191da104f1c97b4e929bf87 36888 postgresql-plpython3-9.1_9.1.9-0ubuntu12.04_armhf.deb 7a0aafa0d78fbd9acf1fae6da5b6c7172ab5c406 23022 postgresql-pltcl-9.1_9.1.9-0ubuntu12.04_armhf.deb 462ece3a4a59872141a529117e055394878e4ccd 4996159 postgresql-9.1_9.1.9-0ubuntu12.04_armhf_translations.tar.gz Checksums-Sha256: 713b03bdcf06972ceb2f2e69f8d067d470c0f561693edc6c15bcd7b1fafad284 193066 libpq-dev_9.1.9-0ubuntu12.04_armhf.deb f47f49ea5c36e0167015a9ec3c979b101a734a8b7df21bbaded0db7e17d51f51 80932 libpq5_9.1.9-0ubuntu12.04_armhf.deb 9182f205f3fc06b8d0bb140c9b416f231a2f926fe9e1459a05e978dccecc3993 34002 libecpg6_9.1.9-0ubuntu12.04_armhf.deb 94685b8a238c4ba306c839bb48fe5bed6627d9cf9c6823e8014f6b887816386f 239404 libecpg-dev_9.1.9-0ubuntu12.04_armhf.deb 2ffa9d4183c55cc3e64317248fddc226b56f3a57697b85f188afe3b6a53bba0e 10682 libecpg-compat3_9.1.9-0ubuntu12.04_armhf.deb eb52650202408b1b8cb3c3ddd2fd49e7111a5b3d137d2481aa388594865d04fc 47898 libpgtypes3_9.1.9-0ubuntu12.04_armhf.deb 2542d3c71117da96815a5dd0e9454429cc184402d1254290611b83ca87a1495c 3978092 postgresql-9.1_9.1.9-0ubuntu12.04_armhf.deb a81f680ba5cc2e81126f307a46df0ec3a80d190333ef1e63b17eeb31535e5be4 8292610 postgresql-9.1-dbg_9.1.9-0ubuntu12.04_armhf.deb cfb5f778c523c9d72cb48564d018d360326aa25fe8d3b04fac75e60b9883193d 894828 postgresql-client-9.1_9.1.9-0ubuntu12.04_armhf.deb 894c7b1b86fe38df3ba514aaa678c8787747c4ee698165affa0d02817d02faa7 678150 postgresql-server-dev-9.1_9.1.9-0ubuntu12.04_armhf.deb 1fee82ba674d8258fa90799ced7fb6bc6e6a655322cc9622b5acd713b30de8c5 390950 postgresql-contrib-9.1_9.1.9-0ubuntu12.04_armhf.deb bd04bb67d3812fcca7b6120c81abc56fd32bf898cfd65791352d2559a06d6154 42240 postgresql-plperl-9.1_9.1.9-0ubuntu12.04_armhf.deb 7aea937f86f320ae6b87424cdedee9fdae9a4af7a1a40db054dc5178302ccacc 37160 postgresql-plpython-9.1_9.1.9-0ubuntu12.04_armhf.deb 49f5c570ecb0a083dce7056eaa6507d202cdb2386fb94b4fedec160d6351bf7c 36888 postgresql-plpython3-9.1_9.1.9-0ubuntu12.04_armhf.deb f4baaf91f569479d0e45bdefe1aed4f5268eab28e231fb75a56812e6997a6176 23022 postgresql-pltcl-9.1_9.1.9-0ubuntu12.04_armhf.deb 87ef6d63f2ceff985e3a4074bc47c137ed5f0cba0234517b4414b7e5f945460b 4996159 postgresql-9.1_9.1.9-0ubuntu12.04_armhf_translations.tar.gz Files: 8d06a1a55aca2bfac396a281477c93a8 193066 libdevel optional libpq-dev_9.1.9-0ubuntu12.04_armhf.deb a5c1a5df01118482117b3207622589d5 80932 libs optional libpq5_9.1.9-0ubuntu12.04_armhf.deb 257f449e4ce5a947f18682072257287c 34002 libs optional libecpg6_9.1.9-0ubuntu12.04_armhf.deb 18ee546a095b172e9cf5be54e4fbf180 239404 libdevel optional libecpg-dev_9.1.9-0ubuntu12.04_armhf.deb d537ca826ce7f23d0b141e6fc0d220b8 10682 libs optional libecpg-compat3_9.1.9-0ubuntu12.04_armhf.deb 2059bbe1a6c66518a4d4e9ef75f4e311 47898 libs optional libpgtypes3_9.1.9-0ubuntu12.04_armhf.deb 6e4194b78c15c0441201db644cd4f0f8 3978092 database optional postgresql-9.1_9.1.9-0ubuntu12.04_armhf.deb f2e8f5fd03a0e986129d877c3b043f2c 8292610 debug extra postgresql-9.1-dbg_9.1.9-0ubuntu12.04_armhf.deb 1c75ca8e6e3be4079781e105cb3ada12 894828 database optional postgresql-client-9.1_9.1.9-0ubuntu12.04_armhf.deb 9b94d471094687ebb04385909fc17ad0 678150 libdevel optional postgresql-server-dev-9.1_9.1.9-0ubuntu12.04_armhf.deb af54b40871fdbf33fe39d3c70b264b34 390950 database optional postgresql-contrib-9.1_9.1.9-0ubuntu12.04_armhf.deb 5bacbf8d29106d19241caea6bebc091f 42240 database optional postgresql-plperl-9.1_9.1.9-0ubuntu12.04_armhf.deb 3d0a6aa59bd01ac76fcba55b6bc70a88 37160 database optional postgresql-plpython-9.1_9.1.9-0ubuntu12.04_armhf.deb 5dbca37e66dbd85dc7bbdcf3ae889229 36888 database optional postgresql-plpython3-9.1_9.1.9-0ubuntu12.04_armhf.deb d48615fd5a54fd06a83c516fc17d100f 23022 database optional postgresql-pltcl-9.1_9.1.9-0ubuntu12.04_armhf.deb e3d59a37cb10cd106713a14a8e4e67be 4996159 raw-translations - postgresql-9.1_9.1.9-0ubuntu12.04_armhf_translations.tar.gz Original-Maintainer: Martin Pitt