-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 13 May 2004 11:00:07 +0200 Source: postgresql Binary: libpgtcl postgresql pgaccess odbc-postgresql libpgperl postgresql-client libecpg3 postgresql-contrib postgresql-dev postgresql-doc python-pygresql libpgsql2 Architecture: arm Version: 7.2.1-2woody5 Distribution: stable-security Urgency: low Maintainer: Debian/ARM Build Daemon Changed-By: Martin Pitt Description: libecpg3 - Shared library libecpg.so.3 for PostgreSQL libpgperl - Perl modules for PostgreSQL. libpgsql2 - Shared library libpq.so.2 for PostgreSQL libpgtcl - Tcl/Tk library and front-end for PostgreSQL. odbc-postgresql - ODBC support for PostgreSQL pgaccess - Tk/Tcl front-end for PostgreSQL database postgresql - Object-relational SQL database, descended from POSTGRES. postgresql-client - Front-end programs for PostgreSQL postgresql-contrib - Additional facilities for PostgreSQL postgresql-dev - Header files for libpq (postgresql library) python-pygresql - PostgreSQL module for Python Changes: postgresql (7.2.1-2woody5) stable-security; urgency=low . * Fixed buffer overflow in ODBC driver (src/interfaces/odbc/): added parameter for target buffer size to make_string() to prevent buffer overflows and corrected all calls to it. This fixes #247306 for woody (bug was already closed with the upload to sid). . With previous versions it was possible to crash (and possibly exploit) e. g. apache if a PHP script connected to a ODBC database with very long credential strings (DSN, username, password, etc.). . Other parts of postgresql are not affected. Files: 4db2ed86401a501cb580540318bbf118 1599718 misc optional postgresql_7.2.1-2woody5_arm.deb 7d048275487b2a24449d68c5b42aaff8 285080 misc optional postgresql-client_7.2.1-2woody5_arm.deb 9fefe99929d22bebd27d3e92136a3e53 510608 devel optional postgresql-dev_7.2.1-2woody5_arm.deb b2024d757f86f18a0e185e3867d1fff9 65206 libs optional libpgsql2_7.2.1-2woody5_arm.deb 4330dc495f966421871537aa10d4e07c 31348 libs optional libecpg3_7.2.1-2woody5_arm.deb b50b60d6afb66faa215f2fa2ef62392f 57410 libs optional libpgtcl_7.2.1-2woody5_arm.deb 8a64191cd13adb62611bb9857b4f53da 64346 libs optional libpgperl_7.2.1-2woody5_arm.deb 04af51b56fa997228f31051a2603db1d 425100 misc optional pgaccess_7.2.1-2woody5_arm.deb 60aa01340e65d6bb4ff6011a830ec523 340576 misc optional postgresql-contrib_7.2.1-2woody5_arm.deb 1808a3bab6f020f07058c3fc8b6bfcb1 62132 misc optional python-pygresql_7.2.1-2woody5_arm.deb 0e5b396f4c2a69c505b2e590aaf428fc 233770 libs optional odbc-postgresql_7.2.1-2woody5_arm.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFAo55tW5ql+IAeqTIRAheQAJ98fkTM5/DFfIFy4ODhBR6lzWlQUQCgslOw yfUXHHGOzv+JF1fo2kcD2lo= =4y4s -----END PGP SIGNATURE-----