This bug was fixed in the package postgresql-9.1 - 9.1.14-0ubuntu0.12.04

---------------
postgresql-9.1 (9.1.14-0ubuntu0.12.04) precise-proposed; urgency=medium

  * New upstream bug fix release: (LP: #1348176)
    - Various data integrity and other bug fixes.
    - Secure Unix-domain sockets of temporary postmasters started during make
       check.
       Any local user able to access the socket file could connect as the
       server's bootstrap superuser, then proceed to execute arbitrary code as
       the operating-system user running the test, as we previously noted in
       CVE-2014-0067. This change defends against that risk by placing the
       server's socket in a temporary, mode 0700 subdirectory of /tmp.
    - See release notes for details:
      http://www.postgresql.org/docs/current/static/release-9-1-14.html
  * Drop pg_regress patches to run tests with socket in /tmp, obsolete with
    above upstream changes and not applicable any more.
 -- Martin Pitt <martin.p...@ubuntu.com>   Thu, 24 Jul 2014 18:09:12 +0200

** Changed in: postgresql-9.3 (Ubuntu Trusty)
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to postgresql-9.1 in Ubuntu.
https://bugs.launchpad.net/bugs/1348176

Title:
  New upstream microreleases 9.3.5, 9.1.14, 8.4.22

Status in “postgresql-8.4” package in Ubuntu:
  Invalid
Status in “postgresql-9.1” package in Ubuntu:
  Invalid
Status in “postgresql-9.3” package in Ubuntu:
  Fix Released
Status in “postgresql-8.4” source package in Lucid:
  Fix Released
Status in “postgresql-8.4” source package in Precise:
  Fix Released
Status in “postgresql-9.1” source package in Precise:
  Fix Released
Status in “postgresql-9.1” source package in Trusty:
  Fix Released
Status in “postgresql-9.3” source package in Trusty:
  Fix Released
Status in “postgresql-9.3” source package in Utopic:
  Fix Released

Bug description:
  New postgresql bug fix releases today:
  http://www.postgresql.org/about/news/1534/

  As per the standing MRE these should go into stables.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/postgresql-8.4/+bug/1348176/+subscriptions

-- 
Mailing list: https://launchpad.net/~desktop-packages
Post to     : desktop-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~desktop-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to