-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 13 May 2004 11:00:07 +0200 Source: postgresql Binary: libpgtcl postgresql pgaccess odbc-postgresql libpgperl postgresql-client libecpg3 postgresql-contrib postgresql-dev postgresql-doc python-pygresql libpgsql2 Architecture: powerpc Version: 7.2.1-2woody5 Distribution: stable-security Urgency: low Maintainer: PPC Build Daemon/voltaire - Ryan Murray Changed-By: Martin Pitt Description: libecpg3 - Shared library libecpg.so.3 for PostgreSQL libpgperl - Perl modules for PostgreSQL. libpgsql2 - Shared library libpq.so.2 for PostgreSQL libpgtcl - Tcl/Tk library and front-end for PostgreSQL. odbc-postgresql - ODBC support for PostgreSQL pgaccess - Tk/Tcl front-end for PostgreSQL database postgresql - Object-relational SQL database, descended from POSTGRES. postgresql-client - Front-end programs for PostgreSQL postgresql-contrib - Additional facilities for PostgreSQL postgresql-dev - Header files for libpq (postgresql library) python-pygresql - PostgreSQL module for Python Changes: postgresql (7.2.1-2woody5) stable-security; urgency=low . * Fixed buffer overflow in ODBC driver (src/interfaces/odbc/): added parameter for target buffer size to make_string() to prevent buffer overflows and corrected all calls to it. This fixes #247306 for woody (bug was already closed with the upload to sid). . With previous versions it was possible to crash (and possibly exploit) e. g. apache if a PHP script connected to a ODBC database with very long credential strings (DSN, username, password, etc.). . Other parts of postgresql are not affected. Files: af8f179e744defbcb2de0fe820e7b8c3 1700774 misc optional postgresql_7.2.1-2woody5_powerpc.deb 0c5e7ed8e40b0b4d1bbd8b6f18f1027a 288166 misc optional postgresql-client_7.2.1-2woody5_powerpc.deb 3cfb7c7072aaa6795ad806493d08d95d 510736 devel optional postgresql-dev_7.2.1-2woody5_powerpc.deb 7246ce0c589597f5d4fc57b1e9297bb4 67172 libs optional libpgsql2_7.2.1-2woody5_powerpc.deb f53e4cf4d47c3d7a8c3f8bb383222ae9 32076 libs optional libecpg3_7.2.1-2woody5_powerpc.deb 2c39270493a80d024109a594ebe849fa 56684 libs optional libpgtcl_7.2.1-2woody5_powerpc.deb 8b3b4f71252d43554d444a5a39618a7f 69222 libs optional libpgperl_7.2.1-2woody5_powerpc.deb 2a43fe0f1d932f084f761028fde72ba2 424950 misc optional pgaccess_7.2.1-2woody5_powerpc.deb 91883697118d6cc4035dc3cf5aa1db5d 341534 misc optional postgresql-contrib_7.2.1-2woody5_powerpc.deb 82466754f9e268f557d3032de3966639 62072 misc optional python-pygresql_7.2.1-2woody5_powerpc.deb 9490b8269b40c555d76b9445752cc959 242572 libs optional odbc-postgresql_7.2.1-2woody5_powerpc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFAo56KW5ql+IAeqTIRAn2/AJ4pXuxHBWE5T0JZsT9I1f5iSiLPEwCgiBqm XWbXTPDSUFbGjP5yDFGnXe0= =tQD1 -----END PGP SIGNATURE-----