Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package postgresql13 for openSUSE:Factory checked in at 2024-02-09 23:52:57 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/postgresql13 (Old) and /work/SRC/openSUSE:Factory/.postgresql13.new.1815 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "postgresql13" Fri Feb 9 23:52:57 2024 rev:27 rq:1145272 version:13.14 Changes: -------- --- /work/SRC/openSUSE:Factory/postgresql13/postgresql13.changes 2023-11-09 21:36:32.515419481 +0100 +++ /work/SRC/openSUSE:Factory/.postgresql13.new.1815/postgresql13.changes 2024-02-09 23:53:18.657106603 +0100 @@ -1,0 +2,18 @@ +Thu Feb 8 14:10:04 UTC 2024 - Reinhard Max <m...@suse.com> + +- Upgrade to 13.14: + * bsc#1219679, CVE-2024-0985: Tighten security restrictions + within REFRESH MATERIALIZED VIEW CONCURRENTLY. + One step of a concurrent refresh command was run under weak + security restrictions. If a materialized view's owner could + persuade a superuser or other high-privileged user to perform a + concurrent refresh on that view, the view's owner could control + code executed with the privileges of the user running REFRESH. + Fix things so that all user-determined code is run as the + view's owner, as expected + * If you use GIN indexes, you may need to reindex after updating + to this release. + * LLVM 18 is now supported. + * https://www.postgresql.org/docs/release/13.4/ + +------------------------------------------------------------------- @@ -30 +47,0 @@ - * https://www.postgresql.org/about/news/2749 Old: ---- postgresql-13.13.tar.bz2 postgresql-13.13.tar.bz2.sha256 New: ---- postgresql-13.14.tar.bz2 postgresql-13.14.tar.bz2.sha256 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ postgresql13.spec ++++++ --- /var/tmp/diff_new_pack.2S4f7J/_old 2024-02-09 23:53:19.609140909 +0100 +++ /var/tmp/diff_new_pack.2S4f7J/_new 2024-02-09 23:53:19.613141053 +0100 @@ -1,7 +1,7 @@ # -# spec file +# spec file for package postgresql13 # -# Copyright (c) 2023 SUSE LLC +# Copyright (c) 2024 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -16,11 +16,11 @@ # -%define pgversion 13.13 +%define pgversion 13.14 %define pgmajor 13 %define buildlibs 0 %define tarversion %{pgversion} -%define latest_supported_llvm_ver 17 +%define latest_supported_llvm_ver 18 ### CUT HERE ### %define pgname postgresql%pgmajor @@ -187,7 +187,7 @@ Provides: postgresql-implementation = %version-%release Requires: %libpq >= %version Requires(post): postgresql-noarch >= %pgmajor -Requires(postun):postgresql-noarch >= %pgmajor +Requires(postun): postgresql-noarch >= %pgmajor # At this point we changed the package layout on SLE and conflict with # older releases to get a clean cut. Conflicts: postgresql-noarch < 12.0.1 @@ -277,7 +277,7 @@ Provides: postgresql-server-devel = %version-%release Provides: postgresql-server-devel-implementation = %version-%release Requires(post): postgresql-server-devel-noarch >= %pgmajor -Requires(postun):postgresql-server-devel-noarch >= %pgmajor +Requires(postun): postgresql-server-devel-noarch >= %pgmajor Requires: %pgname-devel = %version Requires: %pgname-server = %version-%release # Installation of postgresql??-devel is exclusive @@ -335,10 +335,10 @@ Provides: postgresql-server-implementation = %version-%release Requires: %libpq >= %version Requires(pre): postgresql-server-noarch >= %pgmajor -Requires(preun):postgresql-server-noarch >= %pgmajor -Requires(postun):postgresql-server-noarch >= %pgmajor +Requires(preun): postgresql-server-noarch >= %pgmajor +Requires(postun): postgresql-server-noarch >= %pgmajor Requires(post): postgresql-noarch >= %pgmajor -Requires(postun):postgresql-noarch >= %pgmajor +Requires(postun): postgresql-noarch >= %pgmajor %description server PostgreSQL is an advanced object-relational database management system @@ -377,7 +377,7 @@ %if %{with llvm} Requires: %pgname-llvmjit = %version Requires(post): postgresql-llvmjit-devel-noarch >= %pgmajor -Requires(postun):postgresql-llvmjit-devel-noarch >= %pgmajor +Requires(postun): postgresql-llvmjit-devel-noarch >= %pgmajor %requires_file %_bindir/llc %requires_file %_bindir/clang %endif ++++++ postgresql-13.13.tar.bz2 -> postgresql-13.14.tar.bz2 ++++++ /work/SRC/openSUSE:Factory/postgresql13/postgresql-13.13.tar.bz2 /work/SRC/openSUSE:Factory/.postgresql13.new.1815/postgresql-13.14.tar.bz2 differ: char 11, line 1 ++++++ postgresql-13.13.tar.bz2.sha256 -> postgresql-13.14.tar.bz2.sha256 ++++++ --- /work/SRC/openSUSE:Factory/postgresql13/postgresql-13.13.tar.bz2.sha256 2023-11-09 21:36:32.503419038 +0100 +++ /work/SRC/openSUSE:Factory/.postgresql13.new.1815/postgresql-13.14.tar.bz2.sha256 2024-02-09 23:53:18.645106170 +0100 @@ -1 +1 @@ -8af69c2599047a2ad246567d68ec4131aef116954d8c3e469e9789080b37a474 postgresql-13.13.tar.bz2 +b8df078551898960bd500dc5d38a177e9905376df81fe7f2b660a1407fa6a5ed postgresql-13.14.tar.bz2