-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 13 May 2004 11:00:07 +0200 Source: postgresql Binary: libpgtcl postgresql pgaccess odbc-postgresql libpgperl postgresql-client libecpg3 postgresql-contrib postgresql-dev postgresql-doc python-pygresql libpgsql2 Architecture: s390 Version: 7.2.1-2woody5 Distribution: stable-security Urgency: low Maintainer: s390 Build Daemon - Gerhard Tonn Changed-By: Martin Pitt Description: libecpg3 - Shared library libecpg.so.3 for PostgreSQL libpgperl - Perl modules for PostgreSQL. libpgsql2 - Shared library libpq.so.2 for PostgreSQL libpgtcl - Tcl/Tk library and front-end for PostgreSQL. odbc-postgresql - ODBC support for PostgreSQL pgaccess - Tk/Tcl front-end for PostgreSQL database postgresql - Object-relational SQL database, descended from POSTGRES. postgresql-client - Front-end programs for PostgreSQL postgresql-contrib - Additional facilities for PostgreSQL postgresql-dev - Header files for libpq (postgresql library) python-pygresql - PostgreSQL module for Python Changes: postgresql (7.2.1-2woody5) stable-security; urgency=low . * Fixed buffer overflow in ODBC driver (src/interfaces/odbc/): added parameter for target buffer size to make_string() to prevent buffer overflows and corrected all calls to it. This fixes #247306 for woody (bug was already closed with the upload to sid). . With previous versions it was possible to crash (and possibly exploit) e. g. apache if a PHP script connected to a ODBC database with very long credential strings (DSN, username, password, etc.). . Other parts of postgresql are not affected. Files: 1df52e99999735073594818a9de79d7e 1668794 misc optional postgresql_7.2.1-2woody5_s390.deb dc742847f189ea2e7c98df80166bdc74 283922 misc optional postgresql-client_7.2.1-2woody5_s390.deb 09cfb180ef32d9d9d74ed6d9d2d6e2bc 501780 devel optional postgresql-dev_7.2.1-2woody5_s390.deb d5e1fa058beef9ce7d1ae263ea8352b7 67832 libs optional libpgsql2_7.2.1-2woody5_s390.deb 6f0af43311b27669c6619a22aa7bc315 30996 libs optional libecpg3_7.2.1-2woody5_s390.deb 8f3ef06a43e799f64b956c7f213f85c3 55966 libs optional libpgtcl_7.2.1-2woody5_s390.deb 646076aec41162cf302628bdebdd5438 63556 libs optional libpgperl_7.2.1-2woody5_s390.deb 73c6ab2d0370393155bdbcced10ac410 424912 misc optional pgaccess_7.2.1-2woody5_s390.deb 4cda6a813c032484d2e2475958c25557 346534 misc optional postgresql-contrib_7.2.1-2woody5_s390.deb 3f100448c8878c19bb25c7535eadb927 62584 misc optional python-pygresql_7.2.1-2woody5_s390.deb 5be949e0a602da5b9bacdcb38e8bb11d 214586 libs optional odbc-postgresql_7.2.1-2woody5_s390.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFAo56NW5ql+IAeqTIRAsX3AJsEPuj6gVlL+rPo9o4jyqFvuZoq3wCcCGgK sDf0z7fI7697BTplOBMgxiU= =31Ex -----END PGP SIGNATURE-----