-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 13 May 2004 11:00:07 +0200 Source: postgresql Binary: libpgtcl postgresql pgaccess odbc-postgresql libpgperl postgresql-client libecpg3 postgresql-contrib postgresql-dev postgresql-doc python-pygresql libpgsql2 Architecture: mips Version: 7.2.1-2woody5 Distribution: stable-security Urgency: low Maintainer: Debian/MIPS Build Daemon Changed-By: Martin Pitt Description: libecpg3 - Shared library libecpg.so.3 for PostgreSQL libpgperl - Perl modules for PostgreSQL. libpgsql2 - Shared library libpq.so.2 for PostgreSQL libpgtcl - Tcl/Tk library and front-end for PostgreSQL. odbc-postgresql - ODBC support for PostgreSQL pgaccess - Tk/Tcl front-end for PostgreSQL database postgresql - Object-relational SQL database, descended from POSTGRES. postgresql-client - Front-end programs for PostgreSQL postgresql-contrib - Additional facilities for PostgreSQL postgresql-dev - Header files for libpq (postgresql library) python-pygresql - PostgreSQL module for Python Changes: postgresql (7.2.1-2woody5) stable-security; urgency=low . * Fixed buffer overflow in ODBC driver (src/interfaces/odbc/): added parameter for target buffer size to make_string() to prevent buffer overflows and corrected all calls to it. This fixes #247306 for woody (bug was already closed with the upload to sid). . With previous versions it was possible to crash (and possibly exploit) e. g. apache if a PHP script connected to a ODBC database with very long credential strings (DSN, username, password, etc.). . Other parts of postgresql are not affected. Files: 87a24511e8b6a800e94098c267646baf 1750210 misc optional postgresql_7.2.1-2woody5_mips.deb 68f239dd9e644050a538be7747003af0 293826 misc optional postgresql-client_7.2.1-2woody5_mips.deb 309ffc15e3a8d4453b7a663b52b22a34 515110 devel optional postgresql-dev_7.2.1-2woody5_mips.deb 7d9369a781be6da40c64443dad4ddf5d 64962 libs optional libpgsql2_7.2.1-2woody5_mips.deb 759c796a562de2a1e8fc07e2cf3ab7a3 30704 libs optional libecpg3_7.2.1-2woody5_mips.deb 7ddf87b5711ae7d5f5df2bd9d22a72f4 58808 libs optional libpgtcl_7.2.1-2woody5_mips.deb f1837f55b5f0e3c4690d361b3cc6feaf 58678 libs optional libpgperl_7.2.1-2woody5_mips.deb 7aedb457149df2687557604f687ef3bb 425154 misc optional pgaccess_7.2.1-2woody5_mips.deb 259bbf09e18c121ac36d7b7f6ef01b11 343488 misc optional postgresql-contrib_7.2.1-2woody5_mips.deb 72e323d3c8486b05cc920c837dfce965 61258 misc optional python-pygresql_7.2.1-2woody5_mips.deb 7628c60ea1540d4cc49ba1352fefe032 237014 libs optional odbc-postgresql_7.2.1-2woody5_mips.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFAo556W5ql+IAeqTIRAjmyAKCA1fiViZFzxw8OGg8H81BKQ3p7QgCgjz/0 emm+iJL0A//edsYvUHyAAtM= =oMGV -----END PGP SIGNATURE-----