-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 11 May 2022 15:15:30 +0200 Source: postgresql-11 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-11 postgresql-11-dbgsym postgresql-client-11 postgresql-client-11-dbgsym postgresql-plperl-11 postgresql-plperl-11-dbgsym postgresql-plpython-11 postgresql-plpython-11-dbgsym postgresql-plpython3-11 postgresql-plpython3-11-dbgsym postgresql-pltcl-11 postgresql-pltcl-11-dbgsym postgresql-server-dev-11 postgresql-server-dev-11-dbgsym Architecture: armel Version: 11.16-0+deb10u1 Distribution: buster-security Urgency: medium Maintainer: armel Build Daemon (henze) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 11 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-11 - object-relational SQL database, version 11 server postgresql-client-11 - front-end programs for PostgreSQL 11 postgresql-plperl-11 - PL/Perl procedural language for PostgreSQL 11 postgresql-plpython-11 - PL/Python procedural language for PostgreSQL 11 postgresql-plpython3-11 - PL/Python 3 procedural language for PostgreSQL 11 postgresql-pltcl-11 - PL/Tcl procedural language for PostgreSQL 11 postgresql-server-dev-11 - development files for PostgreSQL 11 server-side programming Changes: postgresql-11 (11.16-0+deb10u1) buster-security; urgency=medium . * New upstream release. . * Confine additional operations within security restricted operation sandboxes (Sergey Shinderuk, Noah Misch) . Autovacuum, CLUSTER, CREATE INDEX, REINDEX, REFRESH MATERIALIZED VIEW, and pg_amcheck activated the security restricted operation protection mechanism too late, or even not at all in some code paths. A user having permission to create non-temporary objects within a database could define an object that would execute arbitrary SQL code with superuser permissions the next time that autovacuum processed the object, or that some superuser ran one of the affected commands against it. . The PostgreSQL Project thanks Alexander Lakhin for reporting this problem. (CVE-2022-1552) Checksums-Sha1: 90543d19b5fa055c03d9645adbdb741c87af61eb 18516 libecpg-compat3-dbgsym_11.16-0+deb10u1_armel.deb 9328c8b81b4e9cea05ae11de2df9b9af04fda1c7 19780 libecpg-compat3_11.16-0+deb10u1_armel.deb 28594ddb6c47ca2f9dd2942ad0b6423ca4d53b48 229260 libecpg-dev-dbgsym_11.16-0+deb10u1_armel.deb ee578ef53ee1daba6986fef6e8c84287d4fdd7f3 217916 libecpg-dev_11.16-0+deb10u1_armel.deb ca8f5708516333ff7a69c67f24e750a58cef8251 109620 libecpg6-dbgsym_11.16-0+deb10u1_armel.deb 93e6a0b11dd96f2d94840d7d6013276f9b1936b6 85004 libecpg6_11.16-0+deb10u1_armel.deb f2e7b27a7fc94098c9ed32c5e6aaffb8dc3bc8f4 74648 libpgtypes3-dbgsym_11.16-0+deb10u1_armel.deb 30099d3d0b0ceba3c54ce0ee8c5d60e2826a6595 40508 libpgtypes3_11.16-0+deb10u1_armel.deb d5ebddd9504235483ef5f938de00bb05e3de926a 154760 libpq-dev_11.16-0+deb10u1_armel.deb 97b721bc1af224ed78823d7c9b0a354abf999275 282792 libpq5-dbgsym_11.16-0+deb10u1_armel.deb fa5230f6ebd2104e1bd514df2424b81496513a75 155980 libpq5_11.16-0+deb10u1_armel.deb ce232072d1fccadaa7dd6f6e8c05064c59621fdb 18905040 postgresql-11-dbgsym_11.16-0+deb10u1_armel.deb f2a22e15aecb880734cbc5e15c89b1890dfc83db 16505 postgresql-11_11.16-0+deb10u1_armel-buildd.buildinfo 50af6e9e2cb3db004a3e3aa13dc30bb2126b05ca 13543092 postgresql-11_11.16-0+deb10u1_armel.deb d9e2e7f4814bf99bd9eab06849ccd638389f5b26 1845488 postgresql-client-11-dbgsym_11.16-0+deb10u1_armel.deb 947a2b9b5505ba94ef454224f7fd54e3acc96703 1340908 postgresql-client-11_11.16-0+deb10u1_armel.deb 104adac1d042d060e6ef1d02611e604bfd6d563b 243808 postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armel.deb 05d61b074f7a084a537683cca253671f66bb4dde 63928 postgresql-plperl-11_11.16-0+deb10u1_armel.deb 02b07340b24b49db608ad42d7436421600d0c755 303332 postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armel.deb dabb124a477c29424f8676696dbeaa61445c24ce 52956 postgresql-plpython-11_11.16-0+deb10u1_armel.deb 6349c50134fc96dcf6239823259b56427386e1ce 329888 postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armel.deb 7ce5b64b88528417b5d67b43f2c86637fd1d8aad 69644 postgresql-plpython3-11_11.16-0+deb10u1_armel.deb ac009a87eaef23d00f658fb7868688c4ef33f2fc 97824 postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armel.deb 69e6ed10118ea70b79717ca39bba3ff4eb5e888d 39068 postgresql-pltcl-11_11.16-0+deb10u1_armel.deb 51f2c852936593d28ce386689f61c3e296562d58 100296 postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armel.deb 5d6089246bd8b3b302dfb1d233c6efa07744022b 997228 postgresql-server-dev-11_11.16-0+deb10u1_armel.deb Checksums-Sha256: b2a0542e8ac21dbca7447a83ec41991b4139a83af1b284b522645d7d6d42d4b4 18516 libecpg-compat3-dbgsym_11.16-0+deb10u1_armel.deb 0d8deaea049fcf7d5a99b7f6cb9efeee5ee2aebeab228340dd5d8923bbfb72ff 19780 libecpg-compat3_11.16-0+deb10u1_armel.deb ca0731f912456b46246780924deb802e65d5996e64227145dc15ed874fb66777 229260 libecpg-dev-dbgsym_11.16-0+deb10u1_armel.deb 670ad34df1649bf18c150008a609447441105e93214f85b128fab007e088e947 217916 libecpg-dev_11.16-0+deb10u1_armel.deb 33eff811e184ce9b89202e432688ad2f35e7955dab585bfe6703e39aeaa0ff41 109620 libecpg6-dbgsym_11.16-0+deb10u1_armel.deb 2367f440581eba74f12652a078c3830d10805d58fd57ac9650b215f6187a8bdb 85004 libecpg6_11.16-0+deb10u1_armel.deb 957a7280342000e2a02463feaef55118542d58e432a5afbf6bad07345f43a8d7 74648 libpgtypes3-dbgsym_11.16-0+deb10u1_armel.deb ed674c4ee25d2caefaf6c85e4b32d20a425ed7ed32ef846db3da23bf6dcfe0b4 40508 libpgtypes3_11.16-0+deb10u1_armel.deb 7d6dfe23dfc3ad45d7bebdccf57341e52b1421423438b7ec4ac71ba83cbccc89 154760 libpq-dev_11.16-0+deb10u1_armel.deb 12136db0a2fce82c1445aedda35aedc5354f2619f9fc5d6876ede26c131f2c2d 282792 libpq5-dbgsym_11.16-0+deb10u1_armel.deb a2dfba2bed9d188e51bb5ba7afa7b108f94f1624913bcac61b5ff6794151354e 155980 libpq5_11.16-0+deb10u1_armel.deb 57c3fec7e595c4bb1739a5287bb4f8df1085640d614f38c7be97bd80e2c1acf0 18905040 postgresql-11-dbgsym_11.16-0+deb10u1_armel.deb f936cd02aff90e6ebd48b8f36f33db628512fb744eb9f726a9742fcc32708e01 16505 postgresql-11_11.16-0+deb10u1_armel-buildd.buildinfo 008bccc9c492e1a392b74658fe2121cc9945347610e660ad50755f7eb3aaa0f7 13543092 postgresql-11_11.16-0+deb10u1_armel.deb d54fc5a9ff5ee9ae0647af24043005cc4a0560d6171fdf2f5050c86466d5277a 1845488 postgresql-client-11-dbgsym_11.16-0+deb10u1_armel.deb 42ea2da4f6a2861298a2ee569b25f2b0e448a1658ac78bc640d474b823678be3 1340908 postgresql-client-11_11.16-0+deb10u1_armel.deb 41ee5bbc8fa683a81bce70962603dc0d0933ded56ae31698610eace9eb829a77 243808 postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armel.deb 596fd01e26c117a6aeb0482348e24d33b862428cee885f0ee676e31c4612e6e7 63928 postgresql-plperl-11_11.16-0+deb10u1_armel.deb 2d79126493e588a18fc5ba56449c1bef83921ac6e04ced3623b215e427f90c4b 303332 postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armel.deb cda9f7f7291ec2b9deb6fd8854d6b3a6254cb9b4e1e10b9e2714935ca35780c6 52956 postgresql-plpython-11_11.16-0+deb10u1_armel.deb 49d1cda079ce320c8056e710eca64ba1ccbedf56bf8b1f05c2db14a639f9919f 329888 postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armel.deb 803fbf904b2644c46cb0478cf0470e36723af0873055909256b8f410e0fa035a 69644 postgresql-plpython3-11_11.16-0+deb10u1_armel.deb 7a83824999c9dbb72351a86d0654dd261e63bded4cdcadeb436557e8e7105693 97824 postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armel.deb 3e6e8ce97ba9dcf5d7ece4f6010606056d945c68cbb84b9d72616a51bc5e63ae 39068 postgresql-pltcl-11_11.16-0+deb10u1_armel.deb 8c138c585986f8f4a7f019dabe567b9b37d8c89596085b342b06148b788a3c26 100296 postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armel.deb e4208f2588724288fbe56364b6112c777215e49f1b3d351cf590fa45e9b1dd57 997228 postgresql-server-dev-11_11.16-0+deb10u1_armel.deb Files: 8b00e5279586c029964895dbe2377898 18516 debug optional libecpg-compat3-dbgsym_11.16-0+deb10u1_armel.deb 2e0cffdbe8d7226ec3bc70cd4b626a6c 19780 libs optional libecpg-compat3_11.16-0+deb10u1_armel.deb 7c92a7ffb2f9076361e23d2765230576 229260 debug optional libecpg-dev-dbgsym_11.16-0+deb10u1_armel.deb 0e3a0d3e66ebe8d902a9e455363c5c0f 217916 libdevel optional libecpg-dev_11.16-0+deb10u1_armel.deb f751db0ff382032c175455fa2cf12626 109620 debug optional libecpg6-dbgsym_11.16-0+deb10u1_armel.deb 9851269665c3cac666f4f1d66df7b66e 85004 libs optional libecpg6_11.16-0+deb10u1_armel.deb 91db5adc873915a3452f175beecfcf3f 74648 debug optional libpgtypes3-dbgsym_11.16-0+deb10u1_armel.deb bf414dbe2f1de0bd6e826a63ffe02b57 40508 libs optional libpgtypes3_11.16-0+deb10u1_armel.deb c446ff23750162e2cf3929b078972b88 154760 libdevel optional libpq-dev_11.16-0+deb10u1_armel.deb f0059e10cc761fc8541795678cb3f7ef 282792 debug optional libpq5-dbgsym_11.16-0+deb10u1_armel.deb 561c084175abb6f93304e394007a9c64 155980 libs optional libpq5_11.16-0+deb10u1_armel.deb 7285987fc5b95a8102b3803f826cbd25 18905040 debug optional postgresql-11-dbgsym_11.16-0+deb10u1_armel.deb 6682ad2a656ad32fccfc7dd257a1b8ea 16505 database optional postgresql-11_11.16-0+deb10u1_armel-buildd.buildinfo 019845b899d3ee39659bb9694999dcb0 13543092 database optional postgresql-11_11.16-0+deb10u1_armel.deb 7fb41693273e33c270a4b645579273c2 1845488 debug optional postgresql-client-11-dbgsym_11.16-0+deb10u1_armel.deb 862e8c077f7bf6067dc991df46867da3 1340908 database optional postgresql-client-11_11.16-0+deb10u1_armel.deb a9679608287ceef0bdeda0632124b240 243808 debug optional postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armel.deb ea9945fbf17dd1a5259368edbb987e00 63928 database optional postgresql-plperl-11_11.16-0+deb10u1_armel.deb 59a5a8f4024a4cb71d64807835dc26e9 303332 debug optional postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armel.deb bfa5675b8327210ea7c1643ad207736c 52956 database optional postgresql-plpython-11_11.16-0+deb10u1_armel.deb 83488089322c9bae46e30a9fed9ff6b3 329888 debug optional postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armel.deb 66108930f2c8c0edc92906fa2eede782 69644 database optional postgresql-plpython3-11_11.16-0+deb10u1_armel.deb fca8d086fc72d5ba9adbdb21c4312ea1 97824 debug optional postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armel.deb e99b8edb5b9c44a41a429fbad27a317c 39068 database optional postgresql-pltcl-11_11.16-0+deb10u1_armel.deb d8890b5b3b760e717258b5e7ecea2833 100296 debug optional postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armel.deb 881dabbaebf941b211cac3b16ac96756 997228 libdevel optional postgresql-server-dev-11_11.16-0+deb10u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEVPHpW6K+Ix5+kJfUTXDEvCvwbI0FAmJ71msACgkQTXDEvCvw bI03lhAAx971m/YGXfCQFL2jslGIXtowTtwx7NycBBJZhkGo3F7llyJN+LVtNNqr rRtfDLhd9yS3MvCpQh2//tF7kByMOdaTkzZeOal9QCC3ByM1arc1zUiDdKUJaZIE O5T+x4Tnsan9CScq7rDWDGzAUn0HiuyQAZpGMSV2k2riWsQC6kFDHLXd1+cl+Tv8 WeTKWry2ODSk+XdCuu6EGY+AtyEeZZMH7TLleohXq/vMSkTnyzvh//L2YrgTMjZN 2EMQiIIy+IckCweAFbDsM6XQebWynyuD4VGPCFJOJDpxVumoyUzvo8mKRnm2XUaA 51r9vKB8E/RDNogoCS13GJx2V/kKNj2pZ1qZocaDHby7WFifGYZHAKJhF60WaqhV Y4HRp6/kwseKJJGMC1IpomznjjtY6W4CBPZKc8y35foXkjDxuQfFFQ7ThsQ4rBxR nf2Jhcbu4nbwHGfNnPR/mq3kZgpdQ4wQwbDEnYpoe0a6RzjPYEL/qyZCvhz4rCke TAMS3Wv91e81Gf5uCbZKXt38Y7JfmwWVxmBDmzFhUY7NiQw+85IJOYzG/x4M0yIz QG9Bo1LkGlUOttslE767VLL4iXw96mAhghzUSVProjpaBIdov7tmMtLzLb7+Og+K T0p8y1m6GFKyUALthG25n0neb5zb3D1lWDf0cDQCa1VPaXJDAjY= =p/ep -----END PGP SIGNATURE-----