-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 01 Feb 2011 17:14:21 +0100 Source: postgresql-8.4 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-8.4 postgresql-client-8.4 postgresql-server-dev-8.4 postgresql-doc-8.4 postgresql-contrib-8.4 postgresql-plperl-8.4 postgresql-plpython-8.4 postgresql-pltcl-8.4 postgresql postgresql-client postgresql-doc postgresql-contrib Architecture: source all amd64 Version: 8.4.7-0squeeze2 Distribution: stable-security Urgency: high Maintainer: Martin Pitt Changed-By: Martin Pitt Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 8.4 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql - object-relational SQL database (supported version) postgresql-8.4 - object-relational SQL database, version 8.4 server postgresql-client - front-end programs for PostgreSQL (supported version) postgresql-client-8.4 - front-end programs for PostgreSQL 8.4 postgresql-contrib - additional facilities for PostgreSQL (supported version) postgresql-contrib-8.4 - additional facilities for PostgreSQL postgresql-doc - documentation for the PostgreSQL database management system postgresql-doc-8.4 - documentation for the PostgreSQL database management system postgresql-plperl-8.4 - PL/Perl procedural language for PostgreSQL 8.4 postgresql-plpython-8.4 - PL/Python procedural language for PostgreSQL 8.4 postgresql-pltcl-8.4 - PL/Tcl procedural language for PostgreSQL 8.4 postgresql-server-dev-8.4 - development files for PostgreSQL 8.4 server-side programming Changes: postgresql-8.4 (8.4.7-0squeeze2) stable-security; urgency=high . * New upstream security/bug fix release: - Fix buffer overrun in "contrib/intarray"'s input function for the query_int type. This bug is a security risk since the function's return address could be overwritten. Thanks to Apple Inc's security team for reporting this issue and supplying the fix. (CVE-2010-4015) - Avoid failures when "EXPLAIN" tries to display a simple-form CASE expression. If the CASE's test expression was a constant, the planner could simplify the CASE into a form that confused the expression-display code, resulting in "unexpected CASE WHEN clause" errors. - Fix assignment to an array slice that is before the existing range of subscripts. If there was a gap between the newly added subscripts and the first pre-existing subscript, the code miscalculated how many entries needed to be copied from the old array's null bitmap, potentially leading to data corruption or crash. - Avoid unexpected conversion overflow in planner for very distant date values. The date type supports a wider range of dates than can be represented by the timestamp types, but the planner assumed it could always convert a date to timestamp with impunity. - Fix pg_restore's text output for large objects (BLOBs) when standard_conforming_strings is on. Although restoring directly to a database worked correctly, string escaping was incorrect if pg_restore was asked for SQL text output and standard_conforming_strings had been enabled in the source database. - Fix erroneous parsing of tsquery values containing ... & !(subexpression) | ... . Queries containing this combination of operators were not executed correctly. The same error existed in "contrib/intarray"'s query_int type and "contrib/ltree"'s ltxtquery type. - Fix bug in "contrib/seg"'s GiST picksplit algorithm. This could result in considerable inefficiency, though not actually incorrect answers, in a GiST index on a seg column. If you have such an index, consider "REINDEX"ing it after installing this update. (This is identical to the bug that was fixed in "contrib/cube" in the previous update.) Checksums-Sha1: cd05875f1374de1fbf11bf1d2fbc8adc2f17dc39 2150 postgresql-8.4_8.4.7-0squeeze2.dsc f401606ae3cf0aece09fff2b7ba98d77ba9678a4 17640221 postgresql-8.4_8.4.7.orig.tar.gz 371e43502fc357469b8fa980b35e60b2dad43c12 41873 postgresql-8.4_8.4.7-0squeeze2.diff.gz 5be642c51765712867a373440693f2ce8387de73 1920866 postgresql-doc-8.4_8.4.7-0squeeze2_all.deb e79f6029c942bb175bc24dd5ac15fbe8847e7053 20024 postgresql_8.4.7-0squeeze2_all.deb d4b49e8efdab5630947b4b9f24b6af52741eb35f 19996 postgresql-client_8.4.7-0squeeze2_all.deb 302fe3e66f30717fa083104cdc542404e42f1fc4 19838 postgresql-doc_8.4.7-0squeeze2_all.deb 27a714d1db5e910e1fef6df58e65a6847b0f4c7b 19892 postgresql-contrib_8.4.7-0squeeze2_all.deb cca9ee4f5d63b8ce6e7f2cddb876277fa47a8a30 237668 libpq-dev_8.4.7-0squeeze2_amd64.deb e4b431d184d5a80b225379a5266a705cd602e34a 151374 libpq5_8.4.7-0squeeze2_amd64.deb ab9e59874bb1177803993cdb7a7bdd6a428d0e05 88572 libecpg6_8.4.7-0squeeze2_amd64.deb 04ff071c456b1c28c33da3c91db278ccf32144a6 257570 libecpg-dev_8.4.7-0squeeze2_amd64.deb 2e88e364dc53a5f1cb1ef11645c42e4392d708aa 28624 libecpg-compat3_8.4.7-0squeeze2_amd64.deb 4a15044eb1d32b76d4d6604ed57ad6a67cd3c528 52464 libpgtypes3_8.4.7-0squeeze2_amd64.deb c983e857d02df885aaac44b33233369662bd5741 5335506 postgresql-8.4_8.4.7-0squeeze2_amd64.deb 99d167b89eaf6d722d8f04da49f1cd22214c98ef 1472010 postgresql-client-8.4_8.4.7-0squeeze2_amd64.deb 751ab9f7da3e005918e1976eec2efc98076864bc 635780 postgresql-server-dev-8.4_8.4.7-0squeeze2_amd64.deb 0b00e5cf46cca984ba34a74b561baac44198bc48 430342 postgresql-contrib-8.4_8.4.7-0squeeze2_amd64.deb ee202ab2fde01a5b1b8fad9986d9685a4ee1a5f4 56880 postgresql-plperl-8.4_8.4.7-0squeeze2_amd64.deb 46f4d7fd2168a075e0059f18ef6da76b065e5b31 56810 postgresql-plpython-8.4_8.4.7-0squeeze2_amd64.deb 5d51c6bc25fe77987288f3b27725c17ff1ddef25 42988 postgresql-pltcl-8.4_8.4.7-0squeeze2_amd64.deb Checksums-Sha256: ed6d02dcef90fd005ff951930d099930ed97ab71e45425b8c23350783abaf32e 2150 postgresql-8.4_8.4.7-0squeeze2.dsc 40b01764a2542f2186c6f43877285774bae582ba625bda6a5a02de3c98faad83 17640221 postgresql-8.4_8.4.7.orig.tar.gz 0591c4220fe198e885d87acce979aa51a6dd54783b9473ed1c79bb1110438dcf 41873 postgresql-8.4_8.4.7-0squeeze2.diff.gz 055cd3be4cbc9d26e5db66c493b2d61280fceb7562d514faf1ad53827f39b84a 1920866 postgresql-doc-8.4_8.4.7-0squeeze2_all.deb 90ab90ddc0595f079fdf24585639bec8d311cedd229b2a8195b52d7762838161 20024 postgresql_8.4.7-0squeeze2_all.deb 59fe713332c1adb1c97ea276436b70ff896a16b91a84bd01c0f481ef8d2c7664 19996 postgresql-client_8.4.7-0squeeze2_all.deb 176a9b2746964487d00fa3094bd304e8939d9fde5e807df0259468b2efda54fb 19838 postgresql-doc_8.4.7-0squeeze2_all.deb e46430a40468093233b6f818b168c4e4641433e798169240b1e40861a6e7a743 19892 postgresql-contrib_8.4.7-0squeeze2_all.deb 77fca79f7db5dffeba8ebd7f780b96077a4520f74832e219d3287fe2400e3f3f 237668 libpq-dev_8.4.7-0squeeze2_amd64.deb 0be472ea5dbbe14b7e75f2d5489ced98d30b42ea6b2f432bf5514fa5c835000b 151374 libpq5_8.4.7-0squeeze2_amd64.deb 152c8e237ac8a65e8d57182320432046c90c9dab971216bfc9543906e27e1f13 88572 libecpg6_8.4.7-0squeeze2_amd64.deb 19fea1a1cbab2dd3ea5ee1c32aa78807ecb824c33b8ca0403650234f25e7857e 257570 libecpg-dev_8.4.7-0squeeze2_amd64.deb 03c269a30ff15e13ad073d6c4dc92d52311768b2412239c9077fb4ef0c90e4e8 28624 libecpg-compat3_8.4.7-0squeeze2_amd64.deb b5a77fe7b7e0f282158b59d43170c566d4aa5ed9c27b6e19b157d8a1513b2cfa 52464 libpgtypes3_8.4.7-0squeeze2_amd64.deb 77a34a45a1feaed96166c573c3361177fd785f1dc18ef43491ef68ee3bcf14ea 5335506 postgresql-8.4_8.4.7-0squeeze2_amd64.deb 47e9aaab9de853f9e4290c37e49736f2221af0b114e879cc504b6c2896ea809f 1472010 postgresql-client-8.4_8.4.7-0squeeze2_amd64.deb bb56deb90548d2f28265f6faa16202a85eba3cbd296da764f10607b2f90cdd38 635780 postgresql-server-dev-8.4_8.4.7-0squeeze2_amd64.deb 0a0d08896abf25f22aaf76ce7445553cc19306279fdf23906f5815341f5d6bbb 430342 postgresql-contrib-8.4_8.4.7-0squeeze2_amd64.deb badd53e3eb23c83817e53efbc324699dfdf97042d2c6ba5eed9e46159399a96e 56880 postgresql-plperl-8.4_8.4.7-0squeeze2_amd64.deb 7009dcc5f435ac6ffe15e70b190a914d9065973696439a40a9f613c311f499df 56810 postgresql-plpython-8.4_8.4.7-0squeeze2_amd64.deb 196d7f4c427f3fdb4bef5e0a4fb6d16f0d64e658f16217e253e43017ff4a0d56 42988 postgresql-pltcl-8.4_8.4.7-0squeeze2_amd64.deb Files: c1a44b270770f9b9e2d6afee7207fdaa 2150 database optional postgresql-8.4_8.4.7-0squeeze2.dsc 4771d4ae4fd9e7e9b92c22253517508d 17640221 database optional postgresql-8.4_8.4.7.orig.tar.gz d75ed214e9a3c10068e8c8251a9b517a 41873 database optional postgresql-8.4_8.4.7-0squeeze2.diff.gz 67ebb225a98933831612b7fed0a9ca97 1920866 doc optional postgresql-doc-8.4_8.4.7-0squeeze2_all.deb 7606deecadbe67378d0bee032ff1fa5b 20024 database optional postgresql_8.4.7-0squeeze2_all.deb 02e872d99974f4a468c5095e364b0b67 19996 database optional postgresql-client_8.4.7-0squeeze2_all.deb 6dd641cc15ee0529523f2fd2edbd9ae5 19838 doc optional postgresql-doc_8.4.7-0squeeze2_all.deb cca07072ba94b0b936e21ce73512fcad 19892 database optional postgresql-contrib_8.4.7-0squeeze2_all.deb 315977dd5e1d3a0e5d6d86b5a56f4258 237668 libdevel optional libpq-dev_8.4.7-0squeeze2_amd64.deb 21f7433c7035458408e025fbfc065306 151374 libs optional libpq5_8.4.7-0squeeze2_amd64.deb 71f930191fde78cf47ab377ece02dca5 88572 libs optional libecpg6_8.4.7-0squeeze2_amd64.deb 5878ff46eec26108c84451d43c4c229a 257570 libdevel optional libecpg-dev_8.4.7-0squeeze2_amd64.deb 0f7c8e080ba7f5fe2283469d7eec9aa1 28624 libs optional libecpg-compat3_8.4.7-0squeeze2_amd64.deb d0e90cb076699c37ce88f6b916d3cf78 52464 libs optional libpgtypes3_8.4.7-0squeeze2_amd64.deb ccdef946525b8721ad962d133d88db16 5335506 database optional postgresql-8.4_8.4.7-0squeeze2_amd64.deb ce194dd6d1965b234dd7185a17fee09d 1472010 database optional postgresql-client-8.4_8.4.7-0squeeze2_amd64.deb fc0625d6ab0a10a85a732909d600b5ea 635780 libdevel optional postgresql-server-dev-8.4_8.4.7-0squeeze2_amd64.deb 202afeb916daf28bdde3b056c0c8bc07 430342 database optional postgresql-contrib-8.4_8.4.7-0squeeze2_amd64.deb 71b27b13f418e6d5555e38182d1009be 56880 database optional postgresql-plperl-8.4_8.4.7-0squeeze2_amd64.deb 01b728612c2d653cf1635dc65dca01ec 56810 database optional postgresql-plpython-8.4_8.4.7-0squeeze2_amd64.deb e11df151aff39a05ef8373c174e56431 42988 database optional postgresql-pltcl-8.4_8.4.7-0squeeze2_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQEbBAEBAgAGBQJNTxA6AAoJEL97/wQC1SS+iXQH92DzGKArSiIa55DanZIbOP89 /u6S8sh24oeqYvkpROFE8MK08yyN/pAE1Vbe9mhMD1Lkfe1vn1xmCL04Ww4eh7HW CvwgHKZEhWdpSW9xvb29Go02abQPYzKBbRJ1Pbn539WxARkW/Gg2sem9iE7fDj7N QSEjvuqoF+j4lsmVyHWe6dIUqqWEo/YE48IxYOHLoCQ+SV+rKWp4apYMZfEz32pF su4Rv0pnMdkK3fsstgqoQMpAyV1A1aQRaG69umGnYbnIjP3hIC2nCHUeK0L4O/Vj MCpSBrEsf8lDF7B05vRf4hXKf16FlFFzlClkQVPc4Qg+yQBBJBeRmLNe88ALgw== =cksA -----END PGP SIGNATURE-----