-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 23 May 2015 22:58:29 +0200 Source: pgbouncer Binary: pgbouncer Architecture: source amd64 Version: 1.5.2-4+deb7u1 Distribution: wheezy Urgency: medium Maintainer: Christoph Berg <myon@debian.org> Changed-By: Christoph Berg <myon@debian.org> Description: pgbouncer - lightweight connection pooler for PostgreSQL Changes: pgbouncer (1.5.2-4+deb7u1) wheezy; urgency=medium . * Fix remote crash - invalid packet order causes lookup of NULL pointer. Not exploitable, just DoS. (CVE-2015-4054) Cherry-picked from upstream 1.5.5. Checksums-Sha1: 4dbf985fcd2d55295580ef4d4c39661f20e92541 2010 pgbouncer_1.5.2-4+deb7u1.dsc b987d1706778931ab33bdd31fd75d983eca13f8a 7759 pgbouncer_1.5.2-4+deb7u1.debian.tar.gz acdc2639d09e5dad642864030a30ebab028b3579 148810 pgbouncer_1.5.2-4+deb7u1_amd64.deb Checksums-Sha256: 726c1570e170ecfd4f88cac8108fdada5b77ce71ea983659e0c49384e144a201 2010 pgbouncer_1.5.2-4+deb7u1.dsc 81f999b2442554a5583fc8b1e1a8993f795cb81755acb8e445d637db082ef982 7759 pgbouncer_1.5.2-4+deb7u1.debian.tar.gz 2a76ed2fe5de2eea8768b21aca41bff1348c02572d7360918851f8151affb8ee 148810 pgbouncer_1.5.2-4+deb7u1_amd64.deb Files: a1949024fd4c513cb8c765a25e953b7d 2010 database optional pgbouncer_1.5.2-4+deb7u1.dsc 60c81e7d15481c03ed257be12a26dfd9 7759 database optional pgbouncer_1.5.2-4+deb7u1.debian.tar.gz 575ee7fa2680b5a6121d29103ac4a3ec 148810 database optional pgbouncer_1.5.2-4+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJVYZHZAAoJEExaa6sS0qeuEGoP/0iWMumgI0488SheUQfJyr94 ohDAoHcrCUMuZf/nLSLXrxIn5kN05BLTXfDHNIxu+hyuqgX38ZT2yw4VfUVOGQfy kLpmifI/qS1ifsFK+lMZWvjPFpc29Aae59phn5wiC/Ap4fjZOIF3WAjP1iFzQ7Ks y+LxXfhxW4zfCwL/mmtkQSnZZj9g1zsMoGCaEfpbWZLTvqlaHp6H0kagNQunub8c AwkyhFQ1plvKymE+0R0PsWd/bi5M5rykYlsxUaLsl7pEzmNoizuSSimjczp3g2Q3 FgU686XlankZMymtkW49yIijT69yXpoKMTqtrVtFwXILk4mNqSQ/ydOV74JKWs3x 4KWD19MUvaKv8FgsSGJqLVGlw2v0H9RcqbQOQJj+LENT1zctoi/f0qhTgBDDnTx+ 6KNeQAyKvKO1fTil1Rh2VYv409JNcU+Lc9u1Py4boD2cG7lTLJzOAJGMxL3v3QWG 4ErO20qzPpkGVc1OT3gAHIgkUoeeKf7KzafbsjsxtJFtZ8w4rvf6dlAHaf97C5e1 fy6X3PDNFXxu8y/nJ3npNDQ6R/lA5UWSU1909FbKTEoAw/QaPoAs/VLYatdYQCcQ nVWD1ya8ibiag78b0xrpPkpHNpjGQ6M1k7zhzk5/U/5kIGUyZcdylnBVyHgwKQzZ fbQXYt5S5vrpEiUOQH8o =AMXr -----END PGP SIGNATURE-----