pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/databases



Module Name:    pkgsrc
Committed By:   adam
Date:           Sat Oct 10 10:22:20 UTC 2015

Modified Files:
        pkgsrc/databases/postgresql94: Makefile.common distinfo
        pkgsrc/databases/postgresql94-docs: PLIST
        pkgsrc/databases/postgresql94-server: PLIST
        pkgsrc/databases/postgresql94/patches: patch-src_Makefile.global.in

Log Message:
Changes 9.4.5:
Two security issues have been fixed in this release which affect users of specific PostgreSQL features:

CVE-2015-5289: json or jsonb input values constructed from arbitrary user input can crash the PostgreSQL server and cause a denial of service.

CVE-2015-5288: The crypt() function included with the optional pgCrypto extension could be exploited to read a few additional bytes of memory. No working exploit for this issue has been developed.


To generate a diff of this commit:
cvs rdiff -u -r1.5 -r1.6 pkgsrc/databases/postgresql94/Makefile.common
cvs rdiff -u -r1.6 -r1.7 pkgsrc/databases/postgresql94/distinfo
cvs rdiff -u -r1.5 -r1.6 pkgsrc/databases/postgresql94-docs/PLIST
cvs rdiff -u -r1.2 -r1.3 pkgsrc/databases/postgresql94-server/PLIST
cvs rdiff -u -r1.1 -r1.2 \
    pkgsrc/databases/postgresql94/patches/patch-src_Makefile.global.in

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.




Home | Main Index | Thread Index | Old Index