-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 05 Jan 2008 19:19:46 +0100 Source: postgresql-8.3 Binary: libpgtypes3 libpq5 postgresql-plpython-8.3 libpq-dev libecpg-compat3 libecpg6 postgresql-client-8.3 postgresql-contrib-8.3 postgresql-doc-8.3 postgresql-plperl-8.3 libecpg-dev postgresql-8.3 postgresql-pltcl-8.3 postgresql-server-dev-8.3 Architecture: source all i386 Version: 8.3~rc1-1 Distribution: experimental Urgency: low Maintainer: Martin Pitt <mpitt@debian.org> Changed-By: Martin Pitt <mpitt@debian.org> Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 8.3 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-8.3 - object-relational SQL database, version 8.3 server postgresql-client-8.3 - front-end programs for PostgreSQL 8.3 postgresql-contrib-8.3 - additional facilities for PostgreSQL postgresql-doc-8.3 - documentation for the PostgreSQL database management system postgresql-plperl-8.3 - PL/Perl procedural language for PostgreSQL 8.3 postgresql-plpython-8.3 - PL/Python procedural language for PostgreSQL 8.3 postgresql-pltcl-8.3 - PL/Tcl procedural language for PostgreSQL 8.3 postgresql-server-dev-8.3 - development files for PostgreSQL 8.3 server-side programming Closes: 458752 Changes: postgresql-8.3 (8.3~rc1-1) experimental; urgency=low . * First release candidate of PostgreSQL 8.3. This also provides the security bug fixes of 8.2.6: - Prevent functions in indexes from executing with the privileges of the user running "VACUUM", "ANALYZE", etc. "SET ROLE" is now forbidden within a SECURITY DEFINER context. [CVE-2007-6600] - Suitably crafted regular-expression patterns could cause crashes, infinite or near-infinite looping, and/or massive memory consumption, all of which pose denial-of-service hazards for applications that accept regex search patterns from untrustworthy sources. [CVE-2007-4769, CVE-2007-4772, CVE-2007-6067] - Require non-superusers who use "/contrib/dblink" to use only password authentication, as a security measure. The fix that appeared for this in 8.2.5 was incomplete, as it plugged the hole for only some "dblink" functions. [CVE-2007-6601, CVE-2007-3278] * debian/patches/04-psql-passwordprompt.patch: Update for new version. * Bump Standards-Version to 3.7.3 (no changes necessary). * debian/rules: - Build with -O1 on sparc and alpha until the miscompilation with -O2 is sorted out (http://lists.debian.org/debian-alpha/2007/11/msg00025.html). - Have a failed test suite fail the build on all architectures again. * Ship pg_config in postgresql-server-dev, and ship a copy in /usr/bin in libpq-dev, instead of libpq-dev shipping it in /usr/lib/postgresql/<version>/bin. This makes it possible to use a libpq-dev from a different major version. (See #455509) * debian/control: Mention tablefunc in -contrib description. (Closes: #458752) * debian/rules: Run make bigcheck instead of check, to run the numeric_big test, too. * debian/rules: Add target 'contrib-check' for running the tests in contrib. Do not call it by default for now, still needs some work. * debian/rules: Add target 'contrib-installcheck' for running the tests in contrib, using the installed programs in the system. * debian/rules: Replace hardcoded '8.3' strings with $(MAJOR_VER) variable. Files: 949b66d3df03e09d5f863a473eaee26f 1130 misc optional postgresql-8.3_8.3~rc1-1.dsc b656eea313e36e11d15117e822fa002a 13478222 misc optional postgresql-8.3_8.3~rc1.orig.tar.gz d3e7578baf273734dc00aedda8e1b512 53809 misc optional postgresql-8.3_8.3~rc1-1.diff.gz 4a307c2be5e214673aedc58b76e39735 2032874 doc optional postgresql-doc-8.3_8.3~rc1-1_all.deb 4f4701bff165faea43a135a5cfdb07e0 387574 libdevel optional libpq-dev_8.3~rc1-1_i386.deb eb258479b06355f906b61b6d09fae454 324178 libs optional libpq5_8.3~rc1-1_i386.deb ff7d6c10490b74da0f3c736603a65e76 221308 libs optional libecpg6_8.3~rc1-1_i386.deb c20721ebe63f6175e7b2a3d616aa0299 403152 libdevel optional libecpg-dev_8.3~rc1-1_i386.deb 399d18253c85da1b8e14b778ebd01418 200820 libs optional libecpg-compat3_8.3~rc1-1_i386.deb 87edd855043f2e07ade8b54e968bc357 221996 libs optional libpgtypes3_8.3~rc1-1_i386.deb 867d88f07f861f52817609d05d4a855f 5042670 misc optional postgresql-8.3_8.3~rc1-1_i386.deb 5bde41a885d13d596bf9556146decf35 1571806 misc optional postgresql-client-8.3_8.3~rc1-1_i386.deb 3be1ab1a6e4dc8884ccaa4346cb0a1ec 760046 libdevel optional postgresql-server-dev-8.3_8.3~rc1-1_i386.deb ec3228cacf536a49e97adb4b47ee9bb2 515008 misc optional postgresql-contrib-8.3_8.3~rc1-1_i386.deb 1810611fee46bcc36bc0169edcf01bcd 221016 misc optional postgresql-plperl-8.3_8.3~rc1-1_i386.deb 1cdba8b8f9e84e795fc2873f48dad1c9 211948 misc optional postgresql-plpython-8.3_8.3~rc1-1_i386.deb adbfe0e5d48a98f11d86505622ace161 211302 misc optional postgresql-pltcl-8.3_8.3~rc1-1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHggqKDecnbV4Fd/IRAggFAKCOymTMY0YMN+B9JLI0LqRM0C9TSQCgoyaw /1AnE6whvbwhkUqknFwHQ7k= =g7YY -----END PGP SIGNATURE----- Accepted: libecpg-compat3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libecpg-compat3_8.3~rc1-1_i386.deb libecpg-dev_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libecpg-dev_8.3~rc1-1_i386.deb libecpg6_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libecpg6_8.3~rc1-1_i386.deb libpgtypes3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libpgtypes3_8.3~rc1-1_i386.deb libpq-dev_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libpq-dev_8.3~rc1-1_i386.deb libpq5_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/libpq5_8.3~rc1-1_i386.deb postgresql-8.3_8.3~rc1-1.diff.gz to pool/main/p/postgresql-8.3/postgresql-8.3_8.3~rc1-1.diff.gz postgresql-8.3_8.3~rc1-1.dsc to pool/main/p/postgresql-8.3/postgresql-8.3_8.3~rc1-1.dsc postgresql-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-8.3_8.3~rc1-1_i386.deb postgresql-8.3_8.3~rc1.orig.tar.gz to pool/main/p/postgresql-8.3/postgresql-8.3_8.3~rc1.orig.tar.gz postgresql-client-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-client-8.3_8.3~rc1-1_i386.deb postgresql-contrib-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-contrib-8.3_8.3~rc1-1_i386.deb postgresql-doc-8.3_8.3~rc1-1_all.deb to pool/main/p/postgresql-8.3/postgresql-doc-8.3_8.3~rc1-1_all.deb postgresql-plperl-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-plperl-8.3_8.3~rc1-1_i386.deb postgresql-plpython-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-plpython-8.3_8.3~rc1-1_i386.deb postgresql-pltcl-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-pltcl-8.3_8.3~rc1-1_i386.deb postgresql-server-dev-8.3_8.3~rc1-1_i386.deb to pool/main/p/postgresql-8.3/postgresql-server-dev-8.3_8.3~rc1-1_i386.deb