Mapping stable-security to proposed-updates. Accepted:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 09 May 2017 17:00:48 +0200 Source: postgresql-9.4 Binary: libpq-dev libpq5 libecpg6 libecpg-dev libecpg-compat3 libpgtypes3 postgresql-9.4 postgresql-9.4-dbg postgresql-client-9.4 postgresql-server-dev-9.4 postgresql-doc-9.4 postgresql-contrib-9.4 postgresql-plperl-9.4 postgresql-plpython-9.4 postgresql-plpython3-9.4 postgresql-pltcl-9.4 Architecture: source amd64 all Version: 9.4.12-0+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Debian PostgreSQL Maintainers <pkg-postgresql-public@lists.alioth.debian.org> Changed-By: Christoph Berg <christoph.b...@credativ.de> Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 9.4 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-9.4 - object-relational SQL database, version 9.4 server postgresql-9.4-dbg - debug symbols for postgresql-9.4 postgresql-client-9.4 - front-end programs for PostgreSQL 9.4 postgresql-contrib-9.4 - additional facilities for PostgreSQL postgresql-doc-9.4 - documentation for the PostgreSQL database management system postgresql-plperl-9.4 - PL/Perl procedural language for PostgreSQL 9.4 postgresql-plpython-9.4 - PL/Python procedural language for PostgreSQL 9.4 postgresql-plpython3-9.4 - PL/Python 3 procedural language for PostgreSQL 9.4 postgresql-pltcl-9.4 - PL/Tcl procedural language for PostgreSQL 9.4 postgresql-server-dev-9.4 - development files for PostgreSQL 9.4 server-side programming Changes: postgresql-9.4 (9.4.12-0+deb8u1) jessie-security; urgency=medium . * New upstream security release. + Restrict visibility of pg_user_mappings.umoptions, to protect passwords stored as user mapping options (CVE-2017-7486) + Prevent exposure of statistical information via leaky operators (CVE-2017-7484) + Restore libpq's recognition of the PGREQUIRESSL environment variable (CVE-2017-7485) Checksums-Sha1: 959c1d3ef901be1672785e29746fe9ec31a8620a 3546 postgresql-9.4_9.4.12-0+deb8u1.dsc 88be8d77b653a652dbf9aca513c3b6a8bfa63259 17833119 postgresql-9.4_9.4.12.orig.tar.bz2 d1e7ddf203cb97085d5e75f78a012b587f046e4a 24660 postgresql-9.4_9.4.12-0+deb8u1.debian.tar.xz 7b56b6a38a8df7c59d8dc1e942223cad9592cb6a 165398 libpq-dev_9.4.12-0+deb8u1_amd64.deb ba3627e2e45ee988fe57a8687777aa5235fdc3e2 125612 libpq5_9.4.12-0+deb8u1_amd64.deb 28c324f956279d5fb78a57fa4fbf09d354fb45cf 80890 libecpg6_9.4.12-0+deb8u1_amd64.deb f3c50d66da91b7788bd23d75aef2ec48f58855c2 218526 libecpg-dev_9.4.12-0+deb8u1_amd64.deb c814ead6a0b21c73988193c419fffa7d1d55e0d4 16842 libecpg-compat3_9.4.12-0+deb8u1_amd64.deb 8126d9647ba6bd7b46eeee926b225607bc1997fe 38912 libpgtypes3_9.4.12-0+deb8u1_amd64.deb b512be509fc53aba4c0e734f9bfce01ab3c7e39a 3663056 postgresql-9.4_9.4.12-0+deb8u1_amd64.deb b651a8fe43ada7a24456fa87b0862ceaa5ad6c6d 12165846 postgresql-9.4-dbg_9.4.12-0+deb8u1_amd64.deb 4cfd85455baaa7aa60883812d40132b322ef2fd5 1083896 postgresql-client-9.4_9.4.12-0+deb8u1_amd64.deb e4bc19d65cd8a0127df9b1dc05803f2fee7554ed 643342 postgresql-server-dev-9.4_9.4.12-0+deb8u1_amd64.deb 73d7090b914726ac4abf9a48c0ca543d456b8573 1876738 postgresql-doc-9.4_9.4.12-0+deb8u1_all.deb e874f679ca15136d754a20aeef56aea24c4a2e7c 453936 postgresql-contrib-9.4_9.4.12-0+deb8u1_amd64.deb 9eacdfd0a02aea107d075634864e6abcc8d4d04c 57996 postgresql-plperl-9.4_9.4.12-0+deb8u1_amd64.deb 1d6210d98299fd221e2e6cd4d6e2a5d78bc644ac 46466 postgresql-plpython-9.4_9.4.12-0+deb8u1_amd64.deb 05ffcaa19853d9b91a27ea581ae21d6f3afc7b3e 45976 postgresql-plpython3-9.4_9.4.12-0+deb8u1_amd64.deb d66e6970aa6325508dd696038aec7e381da04068 31618 postgresql-pltcl-9.4_9.4.12-0+deb8u1_amd64.deb Checksums-Sha256: d854256e6aa72c9394da5c3fb48fe4fa44431ab470bdcb7e128861cc0c66a9dd 3546 postgresql-9.4_9.4.12-0+deb8u1.dsc fca055481875d1c49e31c28443f56472a1474b3fbe25b7ae64440c6118f82e64 17833119 postgresql-9.4_9.4.12.orig.tar.bz2 9499fb30e776b6f4e8c6fdf154aea3468cfe1c5208010c6f67fcdfb3d89421dd 24660 postgresql-9.4_9.4.12-0+deb8u1.debian.tar.xz f41ae70a78252aae4074c717234d235d4f70e2822836ca725b01f286678682a1 165398 libpq-dev_9.4.12-0+deb8u1_amd64.deb 887ce79726df6d84fd4a8889e84e48b649b497d757642c1f45f75359fcdcb117 125612 libpq5_9.4.12-0+deb8u1_amd64.deb 3f81a1509ba868a0e96b66c4af92105a9545c99b4b73ac174103d95b008608d6 80890 libecpg6_9.4.12-0+deb8u1_amd64.deb 3cd6be52e34079289c0c6c32bd58371d8b43f173260174d6f1867ca71fd7c5b5 218526 libecpg-dev_9.4.12-0+deb8u1_amd64.deb 1a5fa34432df36831b324482ad170e33dd568f109271df8b8a50716cfb96b2c8 16842 libecpg-compat3_9.4.12-0+deb8u1_amd64.deb 43f70ee362db4af597a807367a5226b367786db4a9e578b7df6c88c270adbf72 38912 libpgtypes3_9.4.12-0+deb8u1_amd64.deb 6773c53dd277968e92320e45636f28fc7ee1971f55f19703fca36f289affba7c 3663056 postgresql-9.4_9.4.12-0+deb8u1_amd64.deb a01a5a73028074600acf833b525399b290ba9587e349b5b9c82dd639196194e5 12165846 postgresql-9.4-dbg_9.4.12-0+deb8u1_amd64.deb 3897bca52be32e8ceffccd116eb667739e2bb45ecb27e7b587c3f620e2db6de3 1083896 postgresql-client-9.4_9.4.12-0+deb8u1_amd64.deb b3adf2c5acca3a3dce3fc5e0a85334baf9ca34d340770fbf1e08f1f81ef2f751 643342 postgresql-server-dev-9.4_9.4.12-0+deb8u1_amd64.deb 55d95b5cfa90447c3747003aaed813286332ddd5beb7500bfa40d6fe5f3b55f2 1876738 postgresql-doc-9.4_9.4.12-0+deb8u1_all.deb f3ab0067ece52b3239f5980d2838050f0075213486f270e2bd0a2c6df96366f0 453936 postgresql-contrib-9.4_9.4.12-0+deb8u1_amd64.deb 9822820ae2bbaff59d4c0782725e6d31796387e1b3bf15a223e70c7e2db6fb3a 57996 postgresql-plperl-9.4_9.4.12-0+deb8u1_amd64.deb 0345b35503aab77acb5e96e3984d54d9dc5315319116a82f3b8192af4ca5e380 46466 postgresql-plpython-9.4_9.4.12-0+deb8u1_amd64.deb 468ab82aa9551f7d3bac5b4d18b96f0c12f9c66bbcc7dc05efb44144125cefbc 45976 postgresql-plpython3-9.4_9.4.12-0+deb8u1_amd64.deb e35700fd05e704c53cc724a3a7c4f8dc51958d2c79d8aaae8602511523a73767 31618 postgresql-pltcl-9.4_9.4.12-0+deb8u1_amd64.deb Files: 67e60fa3a34472a71a601374e2475e92 3546 database optional postgresql-9.4_9.4.12-0+deb8u1.dsc 8bcb18129ce8242d7b6bfb38846ff749 17833119 database optional postgresql-9.4_9.4.12.orig.tar.bz2 7b139c240192e7a1729575875b4b49b7 24660 database optional postgresql-9.4_9.4.12-0+deb8u1.debian.tar.xz 8bdeea971b24ddf49d979d93e65b9946 165398 libdevel optional libpq-dev_9.4.12-0+deb8u1_amd64.deb a0a4e0f59115dac4709f867022a5739d 125612 libs optional libpq5_9.4.12-0+deb8u1_amd64.deb 850500a776a25a68e9c9fc88c154dffd 80890 libs optional libecpg6_9.4.12-0+deb8u1_amd64.deb d88530402e83e4a93df98280c94a26eb 218526 libdevel optional libecpg-dev_9.4.12-0+deb8u1_amd64.deb 18e576a5e728485e6b2a6a22686837af 16842 libs optional libecpg-compat3_9.4.12-0+deb8u1_amd64.deb 5899581457d19c9c3583553472b20d73 38912 libs optional libpgtypes3_9.4.12-0+deb8u1_amd64.deb 826e7e2c9733bb4d28ee218fd9569d5e 3663056 database optional postgresql-9.4_9.4.12-0+deb8u1_amd64.deb 3060c324a43cbe8d08d0d11efa24b3dd 12165846 debug extra postgresql-9.4-dbg_9.4.12-0+deb8u1_amd64.deb 9a3aec9490355bdfcc1cea2080f839c6 1083896 database optional postgresql-client-9.4_9.4.12-0+deb8u1_amd64.deb 0f9bf18ae46558b592d7071dcc0d422f 643342 libdevel optional postgresql-server-dev-9.4_9.4.12-0+deb8u1_amd64.deb fbc1126eaaad9c195829287daa50ca0e 1876738 doc optional postgresql-doc-9.4_9.4.12-0+deb8u1_all.deb c7e8e15b6d61ab1e8a4edb3ac38532d3 453936 database optional postgresql-contrib-9.4_9.4.12-0+deb8u1_amd64.deb d271e9cabab00f61b57db6424bb3fca9 57996 database optional postgresql-plperl-9.4_9.4.12-0+deb8u1_amd64.deb e6da7c7efe3fe3faa6ce9ba544a3080e 46466 database optional postgresql-plpython-9.4_9.4.12-0+deb8u1_amd64.deb 800e62e66dbe57efb34e104beaae357b 45976 database optional postgresql-plpython3-9.4_9.4.12-0+deb8u1_amd64.deb 50d895343336c3d63aa72a1bba114971 31618 database optional postgresql-pltcl-9.4_9.4.12-0+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEXEj+YVf0kXlZcIfGTFprqxLSp64FAlkR/OcACgkQTFprqxLS p66iEA//QHSs8nfiz0Q6J6dy0o4CJ+79Irq5DgL99V8Idcqg+1BsxfSZRhcEFlYn xCzjiMgUz89Fk4QXmi0KPTwNVBztF+8+b+4DRnaCYXEzRJZKoNWyMSOgMI1rc3Ge Otsp+I9XrZ9IM1HIVfb3axJxWGeAxCWCWaWZu0vtjOtSrTCnXDfRIQS9OzvySFmK RmA7DNuQcGlsWmiEoOYXRr62BHGbKP2o08NwnlxSBM6IxYFSHPBMy7EhZ+/XhTsu C6B96ug5GhMYnPvYBolispYB6SolyZF0BpqXbmYnOIZCyosKZq9mZao9Ox9dra9W dkeSmbgBoyn/L/LyTbA38oY5Z2/Kj1qhSc2arPurEaewekYtrNxuwRtiKVK7TWll 7iUNzT0ob0WvAjrssruGFuMoEX/A3VjQ0yzzpCLc+/C/0LE1UEbVVWDjqizXWu9T /JkoiRUD4f2EgfSUhMdpnmMuCNzGxb09aP376unLbe97ncZ6VQFjjOVaJWq5nJ// UsteZ46Y667AQvBpxyf/igR8+BJqZKbZM1YLLKlCCda6zExbJv+YLKpmgXChC989 97nL7Le+Bwuh7OOlrWkYlVGQdoYcLRTr0LdVyqrOLj19zEXDbZQbs6maw6yW7OGx AdAI1u6HSuL/TlQpcMPFuPk+jGSZW6/WAm5vDX4dnbqA9r7ccRo= =IdsL -----END PGP SIGNATURE----- Thank you for your contribution to Debian. _______________________________________________ Pkg-postgresql-public mailing list Pkg-postgresql-public@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-postgresql-public