Format: 1.8 Date: Tue, 15 Dec 2009 15:02:52 +0100 Source: postgresql-8.3 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-8.3 postgresql-client-8.3 postgresql-server-dev-8.3 postgresql-doc-8.3 postgresql-contrib-8.3 postgresql-plperl-8.3 postgresql-plpython-8.3 postgresql-pltcl-8.3 postgresql postgresql-client postgresql-doc postgresql-contrib Architecture: lpia_translations lpia Version: 8.3.9-0ubuntu8.10 Distribution: intrepid Urgency: low Maintainer: Ubuntu/lpia Build Daemon <buildd@zirconium.buildd> Changed-By: Martin Pitt <martin.pitt@ubuntu.com> Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 8.3 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql - object-relational SQL database (supported version) postgresql-8.3 - object-relational SQL database, version 8.3 server postgresql-client - front-end programs for PostgreSQL (supported version) postgresql-client-8.3 - front-end programs for PostgreSQL 8.3 postgresql-contrib - additional facilities for PostgreSQL (supported version) postgresql-contrib-8.3 - additional facilities for PostgreSQL postgresql-doc - documentation for the PostgreSQL database management system postgresql-doc-8.3 - documentation for the PostgreSQL database management system postgresql-plperl-8.3 - PL/Perl procedural language for PostgreSQL 8.3 postgresql-plpython-8.3 - PL/Python procedural language for PostgreSQL 8.3 postgresql-pltcl-8.3 - PL/Tcl procedural language for PostgreSQL 8.3 postgresql-server-dev-8.3 - development files for PostgreSQL 8.3 server-side programming Launchpad-Bugs-Fixed: 496923 Changes: postgresql-8.3 (8.3.9-0ubuntu8.10) intrepid-security; urgency=low . * New upstream security/bug fix release: (LP: #496923) - Protect against indirect security threats caused by index functions changing session-local state. This change prevents allegedly-immutable index functions from possibly subverting a superuser's session (CVE-2009-4136). - Reject SSL certificates containing an embedded null byte in the common name (CN) field. This prevents unintended matching of a certificate to a server or client name during SSL validation (CVE-2009-4034). - Fix possible crash during backend-startup-time cache initialization. - Avoid crash on empty thesaurus dictionary. - Prevent signals from interrupting VACUUM at unsafe times. - Fix possible crash due to integer overflow in hash table size calculation. - Fix very rare crash in inet/cidr comparisons. - Ensure that shared tuple-level locks held by prepared transactions are not ignored. - Fix premature drop of temporary files used for a cursor that is accessed within a subtransaction. - Fix memory leak in syslogger process when rotating to a new CSV logfile. - Fix incorrect logic for GiST index page splits, when the split depends on a non-first column of the index. - Don't error out if recycling or removing an old WAL file fails at the end of checkpoint. It's better to treat the problem as non-fatal and allow the checkpoint to complete. Future checkpoints will retry the removal. Such problems are not expected in normal operation, but have been seen to be caused by misdesigned Windows anti-virus and backup software. - Fix PAM password processing to be more robust. - Raise the maximum authentication token (Kerberos ticket) size in GSSAPI and SSPI authentication methods. While the old 2000-byte limit was more than enough for Unix Kerberos implementations, tickets issued by Windows Domain Controllers can be much larger. - Re-enable collection of access statistics for sequences. This used to work but was broken in 8.3. - Fix processing of ownership dependencies during CREATE OR REPLACE FUNCTION. - Fix incorrect handling of WHERE "x"="x" conditions. In some cases these could get ignored as redundant, but they aren't -- they're equivalent to "x" IS NOT NULL. - Make text search parser accept underscores in XML attributes. - Fix encoding handling in xml binary input. If the XML header doesn't specify an encoding, we now assume UTF-8 by default; the previous handling was inconsistent. - Fix bug with calling plperl from plperlu or vice versa. - Fix session-lifespan memory leak when a PL/Perl function is redefined. - Ensure that Perl arrays are properly converted to PostgreSQL arrays when returned by a set-returning PL/Perl function. - Fix rare crash in exception processing in PL/Python. - Make the postmaster ignore any application_name parameter in connection request packets, to improve compatibility with future libpq versions. Checksums-Sha1: 79b0fa52d01d253b7b49459ebee21c3e6d93570e 2595022 postgresql-8.3_8.3.9-0ubuntu8.10_lpia_translations.tar.gz ec40cc5071a741d665a09f2e0c65685c5182a513 181192 libpq-dev_8.3.9-0ubuntu8.10_lpia.deb 28ff766f11d30ff9be17b43b7caa520615a0c377 308508 libpq5_8.3.9-0ubuntu8.10_lpia.deb f7627f1fdbfb55a0e94a8785bd4f936215f6e41d 31226 libecpg6_8.3.9-0ubuntu8.10_lpia.deb 62d80490dac80054772339f4aaeb6c41e7081984 216400 libecpg-dev_8.3.9-0ubuntu8.10_lpia.deb 9704bab8e8865e07e8264ac655cbe85b59eb4bec 10418 libecpg-compat3_8.3.9-0ubuntu8.10_lpia.deb bfbc594a6f3872e9c4cf57aab19cb66d69ad6c39 276366 libpgtypes3_8.3.9-0ubuntu8.10_lpia.deb 3ec076a1f7fcc47358fd995bbe243a0e093d1180 3647390 postgresql-8.3_8.3.9-0ubuntu8.10_lpia.deb d674060c3e460a083c83bb9b3b69f80ed8f47e4f 722306 postgresql-client-8.3_8.3.9-0ubuntu8.10_lpia.deb c99ca3a51a41d4668a1e19a4af475875a3898a80 813908 postgresql-server-dev-8.3_8.3.9-0ubuntu8.10_lpia.deb 83d26d1f97a149ab89fb9ff9f6f8901229e2a322 333516 postgresql-contrib-8.3_8.3.9-0ubuntu8.10_lpia.deb e1d4c325b88aaf3c32b92b3317974a3aa7692e31 274018 postgresql-plperl-8.3_8.3.9-0ubuntu8.10_lpia.deb dd332aec6e56a874ffd14cd65cb2c0b70ea75769 267122 postgresql-plpython-8.3_8.3.9-0ubuntu8.10_lpia.deb 1aa317ba63cc74e1f8080ec221d84e42599c8797 266176 postgresql-pltcl-8.3_8.3.9-0ubuntu8.10_lpia.deb Checksums-Sha256: 88f2ab969d69d2337e77a11550dac2fd795bd62cbd6fc67aa31ef1f5417d93f0 2595022 postgresql-8.3_8.3.9-0ubuntu8.10_lpia_translations.tar.gz af85ff624b0631cae2f3b52582300516c3a84a9dc5dfd3542272ec693f47d1b0 181192 libpq-dev_8.3.9-0ubuntu8.10_lpia.deb 013127eede7250465db2783851b1a4eaf93ac4ad8937b2e5774d7db1d2280bbc 308508 libpq5_8.3.9-0ubuntu8.10_lpia.deb 384da4d1b40aec2745f8ddbbd7884525527176db5053e31ee39fa89544de4f27 31226 libecpg6_8.3.9-0ubuntu8.10_lpia.deb d9dcc6fe8da8efd2a8679cc36991e9a43bc0c6a5a4a6f6248fd650722a6df387 216400 libecpg-dev_8.3.9-0ubuntu8.10_lpia.deb d138540ab7af7574134131ebc184672837726588513e6fa7acd3d573b6544873 10418 libecpg-compat3_8.3.9-0ubuntu8.10_lpia.deb 61bb08dd7529598a9abae2b1338eaae72954f233cc7df29e81a9238aaf287977 276366 libpgtypes3_8.3.9-0ubuntu8.10_lpia.deb 1fc43269a985ff3c54c6c6b536460c4c4ad500f9ded941333d4819e0d93f1ea5 3647390 postgresql-8.3_8.3.9-0ubuntu8.10_lpia.deb 522867384a65f7eb6efcffc90b4f6ff49302f8b88e4231510c4b0062f0bb9355 722306 postgresql-client-8.3_8.3.9-0ubuntu8.10_lpia.deb 4688684483b5d0f4d9b19e8a57fe84d31d32b056dc4773a312ea0c5e16b21d7b 813908 postgresql-server-dev-8.3_8.3.9-0ubuntu8.10_lpia.deb bd113e0fa4e5d4a4d708ad4fe36b354783f7ae50ac8d865612877d2a8653d2fc 333516 postgresql-contrib-8.3_8.3.9-0ubuntu8.10_lpia.deb 22700c77633e03c95f571c0eff9e8738a80d98801c27ab2adad02d7b67f70835 274018 postgresql-plperl-8.3_8.3.9-0ubuntu8.10_lpia.deb 9bde4e8036981dd5744f03863a62ce57f10efe741d58cc7008ff799919b85d94 267122 postgresql-plpython-8.3_8.3.9-0ubuntu8.10_lpia.deb 82722e26719f30c59db9125e32e48744522b32e8782a85523f7aa9e9b1cb4d61 266176 postgresql-pltcl-8.3_8.3.9-0ubuntu8.10_lpia.deb Files: 54a8d135668ebbb3b5f0e22f3477ecf8 2595022 raw-translations - postgresql-8.3_8.3.9-0ubuntu8.10_lpia_translations.tar.gz 1815ad58cb93ee76e08db65222b1018b 181192 libdevel optional libpq-dev_8.3.9-0ubuntu8.10_lpia.deb fc06bd60e6db64a9ba9a20ebd4a1b6aa 308508 libs optional libpq5_8.3.9-0ubuntu8.10_lpia.deb 66859e21741346736f8ead65c66feeba 31226 libs optional libecpg6_8.3.9-0ubuntu8.10_lpia.deb 05edb2951f42178b7e0a1cc93922f963 216400 libdevel optional libecpg-dev_8.3.9-0ubuntu8.10_lpia.deb 6ac55dc39264fa42dd04c91d4818201d 10418 libs optional libecpg-compat3_8.3.9-0ubuntu8.10_lpia.deb f147e9b90c44c9f1744fa922ecb2b836 276366 libs optional libpgtypes3_8.3.9-0ubuntu8.10_lpia.deb 57244f6e86fa922f3857cd1b6625863a 3647390 misc optional postgresql-8.3_8.3.9-0ubuntu8.10_lpia.deb ff5930adc5f425d8b59a0efe3dea7a87 722306 misc optional postgresql-client-8.3_8.3.9-0ubuntu8.10_lpia.deb 5758dde0c23d1f307fa2694a4b421624 813908 libdevel optional postgresql-server-dev-8.3_8.3.9-0ubuntu8.10_lpia.deb 90147e77c537edccfcf50fb705db4f9d 333516 misc optional postgresql-contrib-8.3_8.3.9-0ubuntu8.10_lpia.deb 377be15e1a00430193cce0130a855df9 274018 misc optional postgresql-plperl-8.3_8.3.9-0ubuntu8.10_lpia.deb 6880ff9801b62f7e2739dbaab09f8447 267122 misc optional postgresql-plpython-8.3_8.3.9-0ubuntu8.10_lpia.deb a25195084ffcd13c798cb154495ad4fd 266176 misc optional postgresql-pltcl-8.3_8.3.9-0ubuntu8.10_lpia.deb