-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 28 May 2006 17:23:29 +0200 Source: pygresql Binary: python-pygresql python2.4-pygresql python2.3-pygresql Architecture: source all i386 Version: 1:3.8-1.1 Distribution: unstable Urgency: high Maintainer: Martin Pitt <mpitt@debian.org> Changed-By: Martin Pitt <mpitt@debian.org> Description: python-pygresql - PostgreSQL module for Python python2.3-pygresql - PostgreSQL module for Python python2.4-pygresql - PostgreSQL module for Python Closes: 369239 Changes: pygresql (1:3.8-1.1) unstable; urgency=high . * NMU with the maintainer's permission. * Urgency high since this only fixes an important bug with a trivial patch. * pg.py, _quote(): Escape quotes in strings as '', not as \', since the latter does not work any more with some client encodings with the latest PostgreSQL (in some multi-byte encodings you can exploit \' escaping to inject SQL code, see CVE-2006-2314). Closes: #369239 Files: 2a92b1b7637174adc37ba1c26d6bad35 672 python optional pygresql_3.8-1.1.dsc 6bfb0312b1ff3b1e388893e4fbd6efc6 3469 python optional pygresql_3.8-1.1.diff.gz e4290313b76cdc7a0dbc28530058d1c3 39072 python optional python2.4-pygresql_3.8-1.1_i386.deb 8353f67592f1ce3bc2310cc763f7e2b8 39068 python optional python2.3-pygresql_3.8-1.1_i386.deb 50b6ae70f92b532a8a079662085ecaf1 19720 python optional python-pygresql_3.8-1.1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFEecJIDecnbV4Fd/IRAj/VAJ0f1AygmcoxQZNbmRhHhIeMxeJbTACgx/9Z 1tBc7omq4IX7W3pyl1jsvw8= =n1YE -----END PGP SIGNATURE----- Accepted: pygresql_3.8-1.1.diff.gz to pool/main/p/pygresql/pygresql_3.8-1.1.diff.gz pygresql_3.8-1.1.dsc to pool/main/p/pygresql/pygresql_3.8-1.1.dsc python-pygresql_3.8-1.1_all.deb to pool/main/p/pygresql/python-pygresql_3.8-1.1_all.deb python2.3-pygresql_3.8-1.1_i386.deb to pool/main/p/pygresql/python2.3-pygresql_3.8-1.1_i386.deb python2.4-pygresql_3.8-1.1_i386.deb to pool/main/p/pygresql/python2.4-pygresql_3.8-1.1_i386.deb