-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 01 Apr 2019 08:29:53 +0200 Source: sqlite3 Binary: lemon sqlite3 sqlite3-doc libsqlite3-0 libsqlite3-dev libsqlite3-tcl Architecture: source amd64 all Version: 3.27.2-2~bpo9+1 Distribution: stretch-backports Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Sylvain Beucler <beuc@debian.org> Description: lemon - LALR(1) Parser Generator for C or C++ libsqlite3-0 - SQLite 3 shared library libsqlite3-dev - SQLite 3 development files libsqlite3-tcl - SQLite 3 Tcl bindings sqlite3 - Command line interface for SQLite 3 sqlite3-doc - SQLite 3 documentation Closes: 500095 858569 864185 867387 867618 873762 878680 883556 893195 916046 922163 923038 925289 925290 Changes: sqlite3 (3.27.2-2~bpo9+1) stretch-backports; urgency=medium . * Rebuild for stretch-backports. * No changes. . sqlite3 (3.27.2-2) unstable; urgency=high . * Backport security related patches: - use unsigned integers to count the number of pages in a freelist during an integrity_check, to avoid any possibility of a signed integer overflow, - fix a crash that could occur if the RHS of an IN expression is a correlated sub-query that refers to the outer query from within a window frame definition only, - ensure that ALTER TABLE commands open statement transactions, - CVE-2019-9937: fix an fts5 problem with interleaving reads and writes in a single transaction (closes: #925290), - CVE-2019-9936: fix a buffer overread that could occur when running fts5 prefix queries inside a transaction (closes: #925289). . sqlite3 (3.27.2-1) unstable; urgency=medium . * New upstream release (closes: #923038). . sqlite3 (3.27.1-2) unstable; urgency=medium . * Backport upstream fix for assertion fault in self-join with a IN constraint. . sqlite3 (3.27.1-1) unstable; urgency=medium . * New upstream release. * Compile with URI filename support. * Update libsqlite3-0 symbols. . [ Helmut Grohne <helmut@subdivi.de> ] * Mark lemon Multi-Arch: foreign (closes: #922163). . sqlite3 (3.26.0+fossilbc891ac6b-2) unstable; urgency=medium . * Backport upstream fix for a problem with bytecode generation when a query involves two or more indexes on expressions connected by OR. * Update Standards-Version to 4.3.0 . . sqlite3 (3.26.0+fossilbc891ac6b-1) unstable; urgency=medium . * New Fossil snapshot release: - ensure that ALTER TABLE modifies table and column names embedded, - fix a potential NULL pointer dereference that can occur in ALTER TABLE, - fix the sqlite3ExprDup() function so that it correctly duplicates the Window object list, - do not use a partial index as a table scan in an IN operator, - fix a problem with using "<db>-vacuum", - OSSFuzz found a case where an assert() inside sqlite3ExprCompare() can be true. * Revert version number bump. * Fix a problem with the CSV extension when it uses the "header" option on a real file. . sqlite3 (3.26.0-3) unstable; urgency=medium . * Declare that SQLite3 version 3.26.0 breaks unfixed python{,3}-migrate (closes: #916046). . sqlite3 (3.26.0-2) unstable; urgency=medium . * Backport upstream fix to ensure that ALTER TABLE modifies table and column names embedded in WITH clauses that are part of views and triggers. . sqlite3 (3.26.0-1) unstable; urgency=medium . * New upstream release. * Update libsqlite3-0 symbols. . sqlite3 (3.25.3-2) unstable; urgency=medium . * Backport security related patches: - fix a buffer overread associated with sqlite3_deserialize() , - fix a potential buffer overread in the dbstat virtual table when processing a corrupt database file. . sqlite3 (3.25.3-1) unstable; urgency=medium . * New upstream release. . sqlite3 (3.25.2-1) unstable; urgency=medium . * New upstream release. . sqlite3 (3.25.1-1) unstable; urgency=medium . * New upstream release. . sqlite3 (3.25.0-1) unstable; urgency=medium . * New upstream release. * Update libsqlite3-0 symbols. * Update Standards-Version to 4.2.1 . . sqlite3 (3.24.0-1) unstable; urgency=medium . * New upstream release. * Update libsqlite3-0 symbols. * Update debhelper level to 11: - update documentation path. * Update Standards-Version to 4.1.4 . . sqlite3 (3.23.1-1) unstable; urgency=medium . * New upstream release. . sqlite3 (3.23.0-1) unstable; urgency=medium . * New upstream release. * Update libsqlite3-0 symbols. * Remove backport fix of CVE-2018-8740 as this release contains it. . sqlite3 (3.22.0-2) unstable; urgency=high . * Backport upstream security fix for CVE-2018-8740: NULL pointer dereference (closes: #893195). . sqlite3 (3.22.0-1) unstable; urgency=medium . * New upstream release (closes: #867387). * Update libsqlite3-0 symbols. * Replace autotools updateconfig with the debhelper one. * Update Standards-Version to 4.1.3: - remove libsqlite3-0-dbg package and use the auto-generated one (closes: #883556). . sqlite3 (3.21.0-1) unstable; urgency=medium . * New upstream release. . sqlite3 (3.20.1-2) unstable; urgency=high . * Backport fix for CVE-2017-15286, NULL pointer dereference in tableColumnList() (closes: #878680). * Update Standards-Version to 4.1.1: - change libsqlite3-0-dbg priority to optional. . sqlite3 (3.20.1-1) unstable; urgency=medium . * New upstream release. * Backport fix for CVE-2017-13685, '.dump' command crashes following PRAGMA empty_result_callbacks=1 (closes: #873762). . sqlite3 (3.20.0-1) experimental; urgency=medium . * New upstream release: - adds tab completion support (closes: #500095). * Enable the SQLITE_STMT virtual table extension. * Remove dh-autoreconf build dependency. . sqlite3 (3.19.3-3) unstable; urgency=high . * Backport fix for CVE-2017-10989, heap-based buffer over-read via undersized RTree blobs (closes: #867618). . sqlite3 (3.19.3-2) unstable; urgency=medium . * Update Standards-Version to 4.0.0 and debhelper level to 10 . . sqlite3 (3.19.3-1) experimental; urgency=medium . * New upstream release. . sqlite3 (3.19.2-2) experimental; urgency=medium . * Backport configure fix for FTS4 and FTS5 builds (closes: #864185). * Add required sqlite3_fts5_may_be_corrupt@Base symbol to the libsqlite3-0 package. . sqlite3 (3.19.2-1) experimental; urgency=medium . * New upstream, bugfix release. . sqlite3 (3.19.0-1) experimental; urgency=low . * New upstream release. * Update library symbols file: - remove no longer available sqlite3_fts5_may_be_corrupt@Base symbol, - add new sqlite3_set_last_insert_rowid@Base symbol. . sqlite3 (3.17.0-1) experimental; urgency=medium . * New upstream release (closes: #858569). * Remove backported patches. Checksums-Sha1: dcd2ef378fc5925c01480947c13118db6fe7a971 2081 sqlite3_3.27.2-2~bpo9+1.dsc 477050bfc2925af0f166723daac0f1a045cb4e44 23288 sqlite3_3.27.2-2~bpo9+1.debian.tar.xz 6975cbf4a5157481a0e5c2d35ca2356f2ed2bef0 65626 lemon-dbgsym_3.27.2-2~bpo9+1_amd64.deb dedee625ad4a5790eaf6c8ef9fb1dbfdcc3b532d 163690 lemon_3.27.2-2~bpo9+1_amd64.deb c133c6d47f41618e128da3db0a72629980c613d3 1445780 libsqlite3-0-dbgsym_3.27.2-2~bpo9+1_amd64.deb 230dcbab6e5f2fb80e23fe84423e1083ee6cd7a7 637526 libsqlite3-0_3.27.2-2~bpo9+1_amd64.deb e47ba4fe2d85b7048209f350a72054a615a4091e 785042 libsqlite3-dev_3.27.2-2~bpo9+1_amd64.deb 2d9b3c36811463de4d4643fead54fa4a74828318 58998 libsqlite3-tcl-dbgsym_3.27.2-2~bpo9+1_amd64.deb 23339899d028f3c1725b520c85225b3753c9806b 129442 libsqlite3-tcl_3.27.2-2~bpo9+1_amd64.deb 3aef12cf2ac572dd796cc0888d53f9ffa79d720a 3169910 sqlite3-dbgsym_3.27.2-2~bpo9+1_amd64.deb 53a34046aa86a05b7f84f516633393ad21f0ba8d 7022772 sqlite3-doc_3.27.2-2~bpo9+1_all.deb eb010dd464460a3136c8b1c9f8bfedb78fdaee0d 8393 sqlite3_3.27.2-2~bpo9+1_amd64.buildinfo 366a422d9d699e570f9feb49154c330fd4e0c7c5 910960 sqlite3_3.27.2-2~bpo9+1_amd64.deb Checksums-Sha256: abe140bd18cb04c5603e78b10f778d1dbb7830143e74e736415f686fe845dd36 2081 sqlite3_3.27.2-2~bpo9+1.dsc 70cf0ae870ac3c852be15d4f2b24063dcef3676496c39fbf01bb847d8b4467a9 23288 sqlite3_3.27.2-2~bpo9+1.debian.tar.xz fa90b4a39f049c15dbf8846ff8812226d64851f76778d7f450a902547d09f1bf 65626 lemon-dbgsym_3.27.2-2~bpo9+1_amd64.deb d96565ae9b11a573779b183b02adebe2f246091cd2beed84b765eede5a98dcc6 163690 lemon_3.27.2-2~bpo9+1_amd64.deb 0134d89428642a79491b5ca8ec5eceb43ec7e3efe81f96a1dd66e77487cab0b1 1445780 libsqlite3-0-dbgsym_3.27.2-2~bpo9+1_amd64.deb 22d5520f931d0beb23e4a68b06b44cd5db1aa1fca6db27b3b302784aead5fc15 637526 libsqlite3-0_3.27.2-2~bpo9+1_amd64.deb b182a290537b6598e70e1017b31f65b8a653a4ba19e4a0b1451398f01aea0389 785042 libsqlite3-dev_3.27.2-2~bpo9+1_amd64.deb ca5e63fdbd3eb70f26652ce124278558219c5d5cb132076ae47d3f0385910b9d 58998 libsqlite3-tcl-dbgsym_3.27.2-2~bpo9+1_amd64.deb 50fe4e31578340aacece6f899db6b5373135a5cd8d76ff8a707eaf6e493932d3 129442 libsqlite3-tcl_3.27.2-2~bpo9+1_amd64.deb bd18585c049f304dc298a808626bb6c4acf1b63e044ea59256bd201e33238c77 3169910 sqlite3-dbgsym_3.27.2-2~bpo9+1_amd64.deb a0fc7a31deedd854e3ed0e47082eddab18e75ee2f54db8f20bfe0f940cffe160 7022772 sqlite3-doc_3.27.2-2~bpo9+1_all.deb 0242d5dd0a64b415f65689c85783ef3a3f57b39381571915b27a100d56c8793e 8393 sqlite3_3.27.2-2~bpo9+1_amd64.buildinfo 774330e0947efb4448ef07498442b16e09c4bd523569fca2a1855e69ef216fa3 910960 sqlite3_3.27.2-2~bpo9+1_amd64.deb Files: a210cbdfdfb91d15a6a8cdb6b4947a4f 2081 devel optional sqlite3_3.27.2-2~bpo9+1.dsc dd5693e4e881a052bff81e41bd9bc390 23288 devel optional sqlite3_3.27.2-2~bpo9+1.debian.tar.xz 9bf573083173afb73a36f7eb3ee2a157 65626 debug optional lemon-dbgsym_3.27.2-2~bpo9+1_amd64.deb 1fa575cf8151b35ed34d1dc4fd056309 163690 devel optional lemon_3.27.2-2~bpo9+1_amd64.deb cb3d54b17c6ef54331a8b99164af7f06 1445780 debug optional libsqlite3-0-dbgsym_3.27.2-2~bpo9+1_amd64.deb 6514fca6a6f69a7bd584ce247258ad8c 637526 libs optional libsqlite3-0_3.27.2-2~bpo9+1_amd64.deb 74db3e1318577b514122c091598265b1 785042 libdevel optional libsqlite3-dev_3.27.2-2~bpo9+1_amd64.deb 7e7e1704004690a32c9c46321cb19007 58998 debug optional libsqlite3-tcl-dbgsym_3.27.2-2~bpo9+1_amd64.deb c7607949d15d270a9e3db39b2de299d7 129442 interpreters optional libsqlite3-tcl_3.27.2-2~bpo9+1_amd64.deb 45538d5453fc65c9f5f69bc381f480df 3169910 debug optional sqlite3-dbgsym_3.27.2-2~bpo9+1_amd64.deb 672cb5be1fe3d5a3c26d1f98617432e7 7022772 doc optional sqlite3-doc_3.27.2-2~bpo9+1_all.deb a5455bdee2326d5fe38e8fe141f5d6f5 8393 devel optional sqlite3_3.27.2-2~bpo9+1_amd64.buildinfo d069a194d96c9dfa0b54920e1db1bd32 910960 database optional sqlite3_3.27.2-2~bpo9+1_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEQic8GuN/xDR88HkSj/HLbo2JBZ8FAlyhskoACgkQj/HLbo2J BZ+lVgf9G15nsV2bmWp1paZBcSG5RYRFgq0RMKQXMRq0InrWJcMLHr+yKlPkybLX d2ygbHdksSMPMM2ABRycPnwU9BeQl1P7awYcjaTezUdmVCRDRDqvnjTpCMNT/VRJ h+3QxNaavalaz8nUEmOUy9asjYkRVGUH6E8gIb4qcU8UoK+ivJk2/DrqIsORw+wl wnc+hp7+8qIyzV330ZnygYrkW0HpjuS4orxjc5VGQHWQ9dN6moEFYKaDT38N6wEP WCZ7+rLWoaA6q7tyZdcrgiJsNNM7YXy7VVBrwa68efHSqHLk/7G7BXK6CiEqCFUc pBq8XqIIuBn7Kjl4qhJ19ngkLEJlew== =/4uL -----END PGP SIGNATURE-----