-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 11 Feb 2016 15:35:41 +0100 Source: postgresql-9.1 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-9.1 postgresql-9.1-dbg postgresql-client-9.1 postgresql-server-dev-9.1 postgresql-doc-9.1 postgresql-contrib-9.1 postgresql-plperl-9.1 postgresql-plpython-9.1 postgresql-plpython3-9.1 postgresql-pltcl-9.1 Architecture: source amd64 all Version: 9.1.20-0+deb7u1 Distribution: wheezy-security Urgency: medium Maintainer: Debian PostgreSQL Maintainers <pkg-postgresql-public@lists.alioth.debian.org> Changed-By: Christoph Berg <christoph.berg@credativ.de> Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 9.1 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-9.1 - object-relational SQL database, version 9.1 server postgresql-9.1-dbg - debug symbols for postgresql-9.1 postgresql-client-9.1 - front-end programs for PostgreSQL 9.1 postgresql-contrib-9.1 - additional facilities for PostgreSQL postgresql-doc-9.1 - documentation for the PostgreSQL database management system postgresql-plperl-9.1 - PL/Perl procedural language for PostgreSQL 9.1 postgresql-plpython-9.1 - PL/Python procedural language for PostgreSQL 9.1 postgresql-plpython3-9.1 - PL/Python 3 procedural language for PostgreSQL 9.1 postgresql-pltcl-9.1 - PL/Tcl procedural language for PostgreSQL 9.1 postgresql-server-dev-9.1 - development files for PostgreSQL 9.1 server-side programming Changes: postgresql-9.1 (9.1.20-0+deb7u1) wheezy-security; urgency=medium . * New upstream version. + Fix infinite loops and buffer-overrun problems in regular expressions. Very large character ranges in bracket expressions could cause infinite loops in some cases, and memory overwrites in other cases. (CVE-2016-0773) + Fix privilege escalation issue for users of PL/Java. Certain custom configuration settings (GUCs) for PL/Java will now be modifiable only by the database superuser. (CVE-2016-0766) Checksums-Sha1: dd5f0f663bda9e1379b131efdd9321d19e2e6dd7 3339 postgresql-9.1_9.1.20-0+deb7u1.dsc 6212dfefa735c14dcfe61e9a0135580dc4b57b18 15844360 postgresql-9.1_9.1.20.orig.tar.bz2 6e63e1fb9fe4a711179c534e4e34608f814a60b4 40295 postgresql-9.1_9.1.20-0+deb7u1.debian.tar.gz d49eb4cf01eedecd445b8fdc21c7ad1803dc1bb3 486812 libpq-dev_9.1.20-0+deb7u1_amd64.deb e1ad4e9787a805591a370cb7755d949e3db20a65 317870 libpq5_9.1.20-0+deb7u1_amd64.deb 0f674105e625de6c31d47c7fb3cfd232dbaa915a 163770 libecpg6_9.1.20-0+deb7u1_amd64.deb 38bb9a328f70403420769a06f60187c2baf4dcfe 480756 libecpg-dev_9.1.20-0+deb7u1_amd64.deb d3e2caefc641f31b90408de105eed77bee1590c3 45314 libecpg-compat3_9.1.20-0+deb7u1_amd64.deb 468fce27c4c23b35dfe8bfd72538b655261a7329 102720 libpgtypes3_9.1.20-0+deb7u1_amd64.deb bb05fa2441b0e2916ee9063f04fdffb057fd6e7c 7998316 postgresql-9.1_9.1.20-0+deb7u1_amd64.deb 718a5e993758d46de52f013159417d2bff89cbc7 26660 postgresql-9.1-dbg_9.1.20-0+deb7u1_amd64.deb 1044420b742a9f00ff8f9ee576aee94484071d72 1586712 postgresql-client-9.1_9.1.20-0+deb7u1_amd64.deb 4af9e2c604fa09b6913050ae66e7dc2fc1f58071 610820 postgresql-server-dev-9.1_9.1.20-0+deb7u1_amd64.deb 5f515fdf618681832ce3d8386d14ad3db1fe5c75 1652376 postgresql-doc-9.1_9.1.20-0+deb7u1_all.deb fd8c1276ab8fd830fab1e489f67f651e7972a62d 1136782 postgresql-contrib-9.1_9.1.20-0+deb7u1_amd64.deb 78042497f54d84a2d7c62e90e9d4f0a3791d22f6 180628 postgresql-plperl-9.1_9.1.20-0+deb7u1_amd64.deb c0f917e470d17ed9e880ae1960bdaa4b25f37b6b 122248 postgresql-plpython-9.1_9.1.20-0+deb7u1_amd64.deb ed38ceb36bbea774183fb2f34a329fd5da44ac7e 121980 postgresql-plpython3-9.1_9.1.20-0+deb7u1_amd64.deb 045ab5382d5af8b6e8ed82c5cd3a3a2bee5cdd38 82456 postgresql-pltcl-9.1_9.1.20-0+deb7u1_amd64.deb Checksums-Sha256: 9dae9f249fdc7c29eace3151f351bdad1a07654d52008f4ab16b8340c3de8def 3339 postgresql-9.1_9.1.20-0+deb7u1.dsc 6d1e6c4334c265a85f0f96407b7a9aafff0f26cb62db2d8d03a32ba0c2872937 15844360 postgresql-9.1_9.1.20.orig.tar.bz2 3f154a5ce5a8b39f20bdd5163ae8c98f45a9a3b77beae3333fc22c15cceb968b 40295 postgresql-9.1_9.1.20-0+deb7u1.debian.tar.gz b88adfd673c07638912fbbd7dff4b1fd1d0ef3bee9341006e0b2e9146cc559de 486812 libpq-dev_9.1.20-0+deb7u1_amd64.deb 933de7adab9b312e86baf0b92df1672367440b223a8fe40a255143360cb625ae 317870 libpq5_9.1.20-0+deb7u1_amd64.deb 9482d3561c62e20d4afdc7309bb3f6e0db3364ceaf2d3056381c26db0d2817ed 163770 libecpg6_9.1.20-0+deb7u1_amd64.deb 5718c6a64c89b210e9ddd905a768f758c55a6fa6dcfbaba6b5a3d4c29f8b32ce 480756 libecpg-dev_9.1.20-0+deb7u1_amd64.deb 1c561ed74b33610392f80aeac8b82f13c7a4552484fc1bf22cb3c8462c75ccb2 45314 libecpg-compat3_9.1.20-0+deb7u1_amd64.deb f17c7ce2ece5cd3c16ce2835b651b58042505b9c18c6f3d469cac16eebedff9a 102720 libpgtypes3_9.1.20-0+deb7u1_amd64.deb 57af4b6570cc34b44620f881b92ede9e049e9de41b0a47b9454fe1fed7845fb6 7998316 postgresql-9.1_9.1.20-0+deb7u1_amd64.deb 67fd34094ff16f2f1ff92d343b764d5d32b7e4cc63c6d9506bfdf2d1191bbcd4 26660 postgresql-9.1-dbg_9.1.20-0+deb7u1_amd64.deb ed652a45db0cacceff02a6b2cf378e0c3f0189537862d4dd5e0355041a6b2103 1586712 postgresql-client-9.1_9.1.20-0+deb7u1_amd64.deb 3111ce843c1bca2d750f93951e23bb843c753b9cb11ab2af2bfe9e1a05e14db1 610820 postgresql-server-dev-9.1_9.1.20-0+deb7u1_amd64.deb d05ff11ae90e2659b078ebd14fbe3d41dfaea6676c7c1d7b93d1fe9f90231be4 1652376 postgresql-doc-9.1_9.1.20-0+deb7u1_all.deb 2307a640e45d91d26f11109301a3983593c298b288bc6bbddf700a9e22db5235 1136782 postgresql-contrib-9.1_9.1.20-0+deb7u1_amd64.deb 128ffc1f1bab0725264adee0f6ea3ced94933bb8e1315723613d80937774b4c6 180628 postgresql-plperl-9.1_9.1.20-0+deb7u1_amd64.deb 26c3c1220d3c168d88903fa1a78234cc005b31f0d402d31848e51691562add7b 122248 postgresql-plpython-9.1_9.1.20-0+deb7u1_amd64.deb a8da44cb69e9d244df984df329e3d575d33eadc65e0fdaffec42b630c279e3a4 121980 postgresql-plpython3-9.1_9.1.20-0+deb7u1_amd64.deb 65833ac649d27eca39a87916ab6cd8da7fb76929d2d4236c11d014466237e995 82456 postgresql-pltcl-9.1_9.1.20-0+deb7u1_amd64.deb Files: 031f406ae8d2eb33651b9f6c5f682bcd 3339 database optional postgresql-9.1_9.1.20-0+deb7u1.dsc 5290fc4e05bc2bfe56997f66d7d3e137 15844360 database optional postgresql-9.1_9.1.20.orig.tar.bz2 eb4f0816665f088de7f0bab2fb33c4e4 40295 database optional postgresql-9.1_9.1.20-0+deb7u1.debian.tar.gz 3e64cbe67445bc8e65d641fce119b8b9 486812 libdevel optional libpq-dev_9.1.20-0+deb7u1_amd64.deb c8e2d36a262eebe594011a999aa9af72 317870 libs optional libpq5_9.1.20-0+deb7u1_amd64.deb e35f455a57047abb5974781d6664660b 163770 libs optional libecpg6_9.1.20-0+deb7u1_amd64.deb 70f0fa874c3f7b087f23ccb5e3b58ddb 480756 libdevel optional libecpg-dev_9.1.20-0+deb7u1_amd64.deb 80fb4f635be954d1a49e736d971d3518 45314 libs optional libecpg-compat3_9.1.20-0+deb7u1_amd64.deb 863a4c4ddb9582187fbb4e7ae3282432 102720 libs optional libpgtypes3_9.1.20-0+deb7u1_amd64.deb dad155fac65134f3b3f0478e6dbd406d 7998316 database optional postgresql-9.1_9.1.20-0+deb7u1_amd64.deb 7a5b3fbf3fe3d5b74f0268d83017a942 26660 debug extra postgresql-9.1-dbg_9.1.20-0+deb7u1_amd64.deb 0afc8722f52585c5afdeac930025722f 1586712 database optional postgresql-client-9.1_9.1.20-0+deb7u1_amd64.deb 70221dbd7aa9ee061a3d15f38f0d78bd 610820 libdevel optional postgresql-server-dev-9.1_9.1.20-0+deb7u1_amd64.deb 2425e5e25ba9f5eb18e3b460e6fcdac5 1652376 doc optional postgresql-doc-9.1_9.1.20-0+deb7u1_all.deb 7e3cf80f0256bc6751b19356256e696c 1136782 database optional postgresql-contrib-9.1_9.1.20-0+deb7u1_amd64.deb e4e65db590503431946668192dda0103 180628 database optional postgresql-plperl-9.1_9.1.20-0+deb7u1_amd64.deb 6384c3bded06bb0efe81ede1fbe26cde 122248 database optional postgresql-plpython-9.1_9.1.20-0+deb7u1_amd64.deb 41769bd0a7e1fda5159357b368463731 121980 database optional postgresql-plpython3-9.1_9.1.20-0+deb7u1_amd64.deb 1e92ccae400d6e6ccc28f1f0c54f83fa 82456 database optional postgresql-pltcl-9.1_9.1.20-0+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJWvJ5PAAoJEExaa6sS0qeu/bcP/Awq0tEjfAaOjANOiKnJJK4g lACRPOPfpcR5pkNpAjax4Ryk3tAUDdNMFpYKQ41h6ju86JUpd3rOOrK6WXmKlcH9 wvv8qpp8l9bidTQ1tAlwb414TK/hkMTaoMLP7hhlVxQJv83yxwC25zU2UuVjtFJK xPRKQ1ZM7VogVeMkcuWyfyka00ADv7qyuNkbICQ8/u1YKhCk+8Pp7dozM9fVcrYZ TkKFj2/PVO367fm//0vctqR/OUQohZ3ZmyUtt0+sU0ezSDpvwgE5smxlIsaV05Wc dy2JIsbEZF4l5L2WNxFQja/XA+V9KmYwchFKWeBpQGAWcjf7tDo0HlxUDOqcyDvs CGZJU/bVS4P3mGR+8gKEpxagSBAks0WdyTNFECFM7xZrGe85H/A5XP7Je3Pb6PHy RQTzWuXZVGB0Jg83Nnv1eYYon2EgRGPKQlegJ0sLOjYdHpIfibb4iBJ1oftESwAz 70WSdFLILgpkeiWQr1llDZgNwTBvzILSOHAltMnPQCJALb93Thn1Xq0zzE7R3+Au PfUdoYL/AQ97V6q+1sPYja08JUp2brCAGcGffUCRyNxSwKfsnN6meOVCrsoShJ8O 8/6zdLkE6mON72V+uPeSHZa8TdVrg5ohVP3fhiu21Ktw+mU4t+vcegbmnNjiZEMn tKWnTUut2p3a5NnJwWq1 =j6j7 -----END PGP SIGNATURE-----