-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 01 Feb 2011 17:14:21 +0100 Source: postgresql-8.4 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-8.4 postgresql-client-8.4 postgresql-server-dev-8.4 postgresql-doc-8.4 postgresql-contrib-8.4 postgresql-plperl-8.4 postgresql-plpython-8.4 postgresql-pltcl-8.4 postgresql postgresql-client postgresql-doc postgresql-contrib Architecture: i386 Version: 8.4.7-0squeeze2 Distribution: stable-security Urgency: high Maintainer: Martin Pitt Changed-By: Martin Pitt Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 8.4 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql - object-relational SQL database (supported version) postgresql-8.4 - object-relational SQL database, version 8.4 server postgresql-client - front-end programs for PostgreSQL (supported version) postgresql-client-8.4 - front-end programs for PostgreSQL 8.4 postgresql-contrib - additional facilities for PostgreSQL (supported version) postgresql-contrib-8.4 - additional facilities for PostgreSQL postgresql-doc - documentation for the PostgreSQL database management system postgresql-doc-8.4 - documentation for the PostgreSQL database management system postgresql-plperl-8.4 - PL/Perl procedural language for PostgreSQL 8.4 postgresql-plpython-8.4 - PL/Python procedural language for PostgreSQL 8.4 postgresql-pltcl-8.4 - PL/Tcl procedural language for PostgreSQL 8.4 postgresql-server-dev-8.4 - development files for PostgreSQL 8.4 server-side programming Changes: postgresql-8.4 (8.4.7-0squeeze2) stable-security; urgency=high . * New upstream security/bug fix release: - Fix buffer overrun in "contrib/intarray"'s input function for the query_int type. This bug is a security risk since the function's return address could be overwritten. Thanks to Apple Inc's security team for reporting this issue and supplying the fix. (CVE-2010-4015) - Avoid failures when "EXPLAIN" tries to display a simple-form CASE expression. If the CASE's test expression was a constant, the planner could simplify the CASE into a form that confused the expression-display code, resulting in "unexpected CASE WHEN clause" errors. - Fix assignment to an array slice that is before the existing range of subscripts. If there was a gap between the newly added subscripts and the first pre-existing subscript, the code miscalculated how many entries needed to be copied from the old array's null bitmap, potentially leading to data corruption or crash. - Avoid unexpected conversion overflow in planner for very distant date values. The date type supports a wider range of dates than can be represented by the timestamp types, but the planner assumed it could always convert a date to timestamp with impunity. - Fix pg_restore's text output for large objects (BLOBs) when standard_conforming_strings is on. Although restoring directly to a database worked correctly, string escaping was incorrect if pg_restore was asked for SQL text output and standard_conforming_strings had been enabled in the source database. - Fix erroneous parsing of tsquery values containing ... & !(subexpression) | ... . Queries containing this combination of operators were not executed correctly. The same error existed in "contrib/intarray"'s query_int type and "contrib/ltree"'s ltxtquery type. - Fix bug in "contrib/seg"'s GiST picksplit algorithm. This could result in considerable inefficiency, though not actually incorrect answers, in a GiST index on a seg column. If you have such an index, consider "REINDEX"ing it after installing this update. (This is identical to the bug that was fixed in "contrib/cube" in the previous update.) Checksums-Sha1: 249b749b12b5c7d13bb4f4083756a5a34d3d88cf 226730 libpq-dev_8.4.7-0squeeze2_i386.deb c05ca8e58b8fa5f2774118b84ff5c73e6048e2bb 144136 libpq5_8.4.7-0squeeze2_i386.deb e6c8ba2eb495c1b148e34fa7d344ede1161d85c9 87448 libecpg6_8.4.7-0squeeze2_i386.deb 88851db6f944a0bed7a54183235680d9d6025e90 243180 libecpg-dev_8.4.7-0squeeze2_i386.deb 21dba25edf5aa7dbabed321aaa4aaf25d26efb6c 27598 libecpg-compat3_8.4.7-0squeeze2_i386.deb d7ff56823aa2e1a14431c4f99910b88f8afc8a55 51182 libpgtypes3_8.4.7-0squeeze2_i386.deb 6898803215ca4f25794b3588c8feff74d928e410 5190522 postgresql-8.4_8.4.7-0squeeze2_i386.deb 7c42e6229a5ada66c526d1bada7daf7c02b2fda7 1431344 postgresql-client-8.4_8.4.7-0squeeze2_i386.deb 5122f0450dff6431e5312983e57494df21bcc389 633548 postgresql-server-dev-8.4_8.4.7-0squeeze2_i386.deb 6f3d292bdd630d1a66804d6f91082ca7ffee33bb 387270 postgresql-contrib-8.4_8.4.7-0squeeze2_i386.deb 7a203de1453da90dd4c3326b399c582c82651310 55246 postgresql-plperl-8.4_8.4.7-0squeeze2_i386.deb a8f6f14e81f5c7c7a8c1a729cc17468700e8a1cf 54434 postgresql-plpython-8.4_8.4.7-0squeeze2_i386.deb ec7e79b1ee728f88aabdfddcbd6f2008afc79276 42374 postgresql-pltcl-8.4_8.4.7-0squeeze2_i386.deb Checksums-Sha256: 01d5c874dd98aee48e351af2d5af8ce793c3effc803a69af2178da3275a3fa2b 226730 libpq-dev_8.4.7-0squeeze2_i386.deb afa8406de1cf6769ac178b301093650ca42d99f41629e7cae18881b0dcbbede9 144136 libpq5_8.4.7-0squeeze2_i386.deb 77c5d9af87861d8cd9185342d3a24277a19b8f31087aa3c3fcea5f1d8e74e35e 87448 libecpg6_8.4.7-0squeeze2_i386.deb a35a4655ca7822db97b7e1af285860709bf80d9bdf7e870ddc26b396021a0b2e 243180 libecpg-dev_8.4.7-0squeeze2_i386.deb e96286945164c14a160a75c1068c37fc02a735bc258797a5945b3812b3a5b6d2 27598 libecpg-compat3_8.4.7-0squeeze2_i386.deb 5c42324b9793ab64f74cdf940086e985cc6e0906efa0f0ed4da328d35a028cf2 51182 libpgtypes3_8.4.7-0squeeze2_i386.deb e87a01381e92099fd0422dabf49ae5f04b85f8e7073f2fd5cbe6c5137d7b85e4 5190522 postgresql-8.4_8.4.7-0squeeze2_i386.deb 233543199a1349293d76bd7a462be0293a682c4c8e446312191d2ea64a1c8f3a 1431344 postgresql-client-8.4_8.4.7-0squeeze2_i386.deb 1aea956c59384c35921cba8f41bafafc382324b07907b7eaa65eab3b5ee0b5e8 633548 postgresql-server-dev-8.4_8.4.7-0squeeze2_i386.deb fa765eb5c67e033b6c5c0aaf25f5b64c62adefce5b988b2bd1018b142aef6be9 387270 postgresql-contrib-8.4_8.4.7-0squeeze2_i386.deb ee3527a3602c4d19accac5b7cc2e4ca0047dc33539cc8397e4d0574fc97760a5 55246 postgresql-plperl-8.4_8.4.7-0squeeze2_i386.deb 634b23ad356fa09079a6c679cdccbb3f16ae3c4eda0e0b1fcc0398da797e5523 54434 postgresql-plpython-8.4_8.4.7-0squeeze2_i386.deb ca89c656712770e0cba84f209e5a52510a1f9ebcbece0764a09ad72e6e5af43d 42374 postgresql-pltcl-8.4_8.4.7-0squeeze2_i386.deb Files: fc0c17d0767c596e1a56b38eb2350c7d 226730 libdevel optional libpq-dev_8.4.7-0squeeze2_i386.deb fdd4b3eae1cdb8205734071fd6bf593b 144136 libs optional libpq5_8.4.7-0squeeze2_i386.deb b54f2ad83dd4e8c8b4c0095f86587502 87448 libs optional libecpg6_8.4.7-0squeeze2_i386.deb b4b86ce566fa10b438041d056e8bea4a 243180 libdevel optional libecpg-dev_8.4.7-0squeeze2_i386.deb d33be068db7715b636d63c13962c31cd 27598 libs optional libecpg-compat3_8.4.7-0squeeze2_i386.deb 399e411acfa0fb69d14f1a5f0fe828e9 51182 libs optional libpgtypes3_8.4.7-0squeeze2_i386.deb 6464e35c319304592e9e8567ef0ebda0 5190522 database optional postgresql-8.4_8.4.7-0squeeze2_i386.deb 1811492dd63ec2ca206ca8e384dd0a0a 1431344 database optional postgresql-client-8.4_8.4.7-0squeeze2_i386.deb bbf8abe67b9156d3cdce322e14d60a66 633548 libdevel optional postgresql-server-dev-8.4_8.4.7-0squeeze2_i386.deb 3cf925e554216335713fe63ab69ccc88 387270 database optional postgresql-contrib-8.4_8.4.7-0squeeze2_i386.deb 959a0fc3af039e6a8466784aa3497234 55246 database optional postgresql-plperl-8.4_8.4.7-0squeeze2_i386.deb 00fa2a0c04a4ce4f2bc4237d01b2ecc4 54434 database optional postgresql-plpython-8.4_8.4.7-0squeeze2_i386.deb 64b4c8be3e9d5dea758714063e653288 42374 database optional postgresql-pltcl-8.4_8.4.7-0squeeze2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQEcBAEBAgAGBQJNT5GkAAoJEL97/wQC1SS+JfAIAKVsnChtQfJmC7YrzroW+/O1 M8FTsxgw4LBR/CIxE7AlOolxv8wiBlAZ5LGbQ8DvrliVLtwnEGJJ3X+IakAHteH4 KFEffrrE+wd7ZtWJugbKQgcTsLLgpoGJY2rKd8mLUf6JpjW/m1eZmX5jcX1cLY4E tSGPnbNZ3Xd7DL0bmoZHa9QtvPMoNK7mc74Z55JDyJtgSzMa2uWltG/4wkTxq1MM m2z122wfxNwGBQ8Eu1stV5zAakPKG52drUNI4dj7Sd2Yd4gXQm/Zv6PubO7tVoYS HFbdnKZaC/d0uN9kOsbztgKGRqQJ/bv//5pzjo1qJkd7XIqfXXLUKtoPPoL6e/k= =QMsE -----END PGP SIGNATURE-----