-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 11 May 2022 15:15:30 +0200 Source: postgresql-11 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-11 postgresql-11-dbgsym postgresql-client-11 postgresql-client-11-dbgsym postgresql-plperl-11 postgresql-plperl-11-dbgsym postgresql-plpython-11 postgresql-plpython-11-dbgsym postgresql-plpython3-11 postgresql-plpython3-11-dbgsym postgresql-pltcl-11 postgresql-pltcl-11-dbgsym postgresql-server-dev-11 postgresql-server-dev-11-dbgsym Architecture: armhf Version: 11.16-0+deb10u1 Distribution: buster-security Urgency: medium Maintainer: armhf / armel Build Daemon (hoiby) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 11 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-11 - object-relational SQL database, version 11 server postgresql-client-11 - front-end programs for PostgreSQL 11 postgresql-plperl-11 - PL/Perl procedural language for PostgreSQL 11 postgresql-plpython-11 - PL/Python procedural language for PostgreSQL 11 postgresql-plpython3-11 - PL/Python 3 procedural language for PostgreSQL 11 postgresql-pltcl-11 - PL/Tcl procedural language for PostgreSQL 11 postgresql-server-dev-11 - development files for PostgreSQL 11 server-side programming Changes: postgresql-11 (11.16-0+deb10u1) buster-security; urgency=medium . * New upstream release. . * Confine additional operations within security restricted operation sandboxes (Sergey Shinderuk, Noah Misch) . Autovacuum, CLUSTER, CREATE INDEX, REINDEX, REFRESH MATERIALIZED VIEW, and pg_amcheck activated the security restricted operation protection mechanism too late, or even not at all in some code paths. A user having permission to create non-temporary objects within a database could define an object that would execute arbitrary SQL code with superuser permissions the next time that autovacuum processed the object, or that some superuser ran one of the affected commands against it. . The PostgreSQL Project thanks Alexander Lakhin for reporting this problem. (CVE-2022-1552) Checksums-Sha1: e7b259e9c46a4fee6fed1aea3656977a11d49fb3 18916 libecpg-compat3-dbgsym_11.16-0+deb10u1_armhf.deb 19a2ca63363c8826d0e1e5bb3b72942d2d8a1a3d 19868 libecpg-compat3_11.16-0+deb10u1_armhf.deb 2910316783f827ca3e429718a831dc40e23bff97 220176 libecpg-dev-dbgsym_11.16-0+deb10u1_armhf.deb 46fe457068018f3ce7369a390715f736a89aff8c 222492 libecpg-dev_11.16-0+deb10u1_armhf.deb f5dc272a53b227b5d7f693224186cd84b98ea243 110804 libecpg6-dbgsym_11.16-0+deb10u1_armhf.deb 17212e9554230465dec68a998e630b8111847f69 83428 libecpg6_11.16-0+deb10u1_armhf.deb 4db35325e4fa5242df5be6ae998c50bf92297c7b 75468 libpgtypes3-dbgsym_11.16-0+deb10u1_armhf.deb ff6eea596bc148850c5eeeeb065ea8a4675910d0 39308 libpgtypes3_11.16-0+deb10u1_armhf.deb dbe6eb1e9a914dacbbeb529bde80ae4246b25184 154616 libpq-dev_11.16-0+deb10u1_armhf.deb 1e82e054b0851654388f257797b1ca9089d32c00 287424 libpq5-dbgsym_11.16-0+deb10u1_armhf.deb 341731c02a6b32f61551bd0769b1d3bcd257c6b1 156380 libpq5_11.16-0+deb10u1_armhf.deb 98e583844a20a045f1a18df023be6c53e9d21fbe 19049372 postgresql-11-dbgsym_11.16-0+deb10u1_armhf.deb 649df21aa5d02cc25881a8043c7c21faa7b2773b 16507 postgresql-11_11.16-0+deb10u1_armhf-buildd.buildinfo 34e2b1a6ccc51bef338d8ea22433f2f06c66a7da 13546784 postgresql-11_11.16-0+deb10u1_armhf.deb f2c07f34a66022d913739e08572572b19d000e7e 1872380 postgresql-client-11-dbgsym_11.16-0+deb10u1_armhf.deb 4851e134ceab3d92f5d2aac4352a8e55b8a14be8 1350972 postgresql-client-11_11.16-0+deb10u1_armhf.deb f182f2f3bac81ca28acf2120f4a2b26bec14ec57 245532 postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armhf.deb e64b0b0fbdc9046a100ee09638823735b5359044 64252 postgresql-plperl-11_11.16-0+deb10u1_armhf.deb fd051193a5b9f2c67f9a134d3e277061bed8583c 304236 postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armhf.deb e823351782fb5a3733dda9b0b219883ed5c121c8 52856 postgresql-plpython-11_11.16-0+deb10u1_armhf.deb b6061ffd6bb48a56161e636282e752c4eafc4e50 330828 postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armhf.deb 45d212cc2d3bb0ccd955fdabfb30611ca434cc8f 69256 postgresql-plpython3-11_11.16-0+deb10u1_armhf.deb 7a707a31f286e5c1bb17a15f8cf31f8b51cbea26 98488 postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armhf.deb e32aa75f5c3060bc7e18631e2ecf42a227bfd1cb 39112 postgresql-pltcl-11_11.16-0+deb10u1_armhf.deb 28cd4ec815bb3d833457dd3ff8a9310a2cf97224 101256 postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armhf.deb d371caad36dbf54bf1bfb9a9894b5193723fc2d8 995856 postgresql-server-dev-11_11.16-0+deb10u1_armhf.deb Checksums-Sha256: 802010a4d712af8b9b59be718a5d2827eae954e60f356ab8e09af3d5ea5b2eae 18916 libecpg-compat3-dbgsym_11.16-0+deb10u1_armhf.deb 33d2f0037bf620bf0290bf145f8f8d045512b4464551edf1dbd2868a19ec369e 19868 libecpg-compat3_11.16-0+deb10u1_armhf.deb b197b8cf97a4e440f5f2aed098d8e441f4371866cb0e759f42ca2686e1b2b308 220176 libecpg-dev-dbgsym_11.16-0+deb10u1_armhf.deb 819a3dd237ff17e42837e6746f5fa9a10d8717ac8d3a3069c72f98945e3aeef2 222492 libecpg-dev_11.16-0+deb10u1_armhf.deb e1a94a4cdf659108d8dadc2a5363b53d849019e96a6ada110b8669d2ec00aef9 110804 libecpg6-dbgsym_11.16-0+deb10u1_armhf.deb 0006c308999a0a71f865c6c4fbffdc79f93cd21992afbba89692d7f9a8597c9a 83428 libecpg6_11.16-0+deb10u1_armhf.deb 84d0e6dea2f80b415460188518877922e2320c524a2a35ac5b518a5b3cf05868 75468 libpgtypes3-dbgsym_11.16-0+deb10u1_armhf.deb 7ad0e32c6ef81afa3fd4c365313264788b0e8746a2414ea5663ce466a499888c 39308 libpgtypes3_11.16-0+deb10u1_armhf.deb ffe890f7363d68f22ba6ee0b9affa66662fe464e14b94d553a92e01412fc330e 154616 libpq-dev_11.16-0+deb10u1_armhf.deb 6a7e5c997ed759a881bd88c829f35d2130e0af0a25dd6d687afdf0dff97a8e5f 287424 libpq5-dbgsym_11.16-0+deb10u1_armhf.deb 82523c7c0d02af56ba4bb1330415a93d4b6aabcf73cb964690840e454a378b90 156380 libpq5_11.16-0+deb10u1_armhf.deb 85d0fb17b63cacc3f835d4f5999f48e33659f214e8eacf45a96960f9575c256c 19049372 postgresql-11-dbgsym_11.16-0+deb10u1_armhf.deb b34a6459d53e44eb4fd58291b5e1ccdcdd614965e286e1c919f2c69442944ff8 16507 postgresql-11_11.16-0+deb10u1_armhf-buildd.buildinfo 7b17719bc3e7803bfec420609cb8f0c1daf353fcb4bf10835d62e6ac2e1b5893 13546784 postgresql-11_11.16-0+deb10u1_armhf.deb 918ba1f7f62a0600fab044beb3eb8134e615bcdd46671aadc4419da3fa6d2cc1 1872380 postgresql-client-11-dbgsym_11.16-0+deb10u1_armhf.deb c14b19a0b6ebe6888b17e20f0c4a8ff9e3b21470c56a88426d547b0d6762d582 1350972 postgresql-client-11_11.16-0+deb10u1_armhf.deb fd0c60cdd4912c9dd3946e8e3d0ca9892e6824de30c1c2f09c1438e423f1f27b 245532 postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armhf.deb 5c9bc320552e9a9909bf480c5e4b4257791bad2edd2dce86d4b4627a35df4e1e 64252 postgresql-plperl-11_11.16-0+deb10u1_armhf.deb e7e0999afc8aa06547cb4c3d009170bb508a311639e89cee0c3f6f26a7ffe22c 304236 postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armhf.deb 69fcdfbe795fc1a595f2a913607e69e71137a57c55ed234873ce15453a933b10 52856 postgresql-plpython-11_11.16-0+deb10u1_armhf.deb fbf8a0a98a8abe1f7504933ec4d2b3cbe30e6b008c6bfbc5f5894928a841727b 330828 postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armhf.deb 8d531485d678cbbc8ce9a0963f824bb9776bb7119b9c2dbc908c0c411ae827dc 69256 postgresql-plpython3-11_11.16-0+deb10u1_armhf.deb 9dda023a8c5f1a8b8a99be843a5f8a600ffb7050ef16b854bfee70195098baca 98488 postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armhf.deb 9dbfca11806354e3a29e66c534fe89d75d6626de423a97632ae48d5e17272161 39112 postgresql-pltcl-11_11.16-0+deb10u1_armhf.deb e54782319fa958fe1c840012e35bb32a7ce6a67c79f8a87eeb87a79fcaee96d3 101256 postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armhf.deb 07fd08a2d29be0b6889019caa3110ae27a9cd9590a73fae07cf0ba601f99576a 995856 postgresql-server-dev-11_11.16-0+deb10u1_armhf.deb Files: 3250cea36e7a2fd2b9585e86e61d9afc 18916 debug optional libecpg-compat3-dbgsym_11.16-0+deb10u1_armhf.deb f2b3ff34857fcc4276eb66a68b5f29ba 19868 libs optional libecpg-compat3_11.16-0+deb10u1_armhf.deb 1cc041c450a5d24cf9e02819408e752f 220176 debug optional libecpg-dev-dbgsym_11.16-0+deb10u1_armhf.deb d5ede8a28b21da1071325e2abe87f1b9 222492 libdevel optional libecpg-dev_11.16-0+deb10u1_armhf.deb b4a54b7b4df7bc559a107bdc5e421e40 110804 debug optional libecpg6-dbgsym_11.16-0+deb10u1_armhf.deb 73cad470228eb86d10806eb39de45f93 83428 libs optional libecpg6_11.16-0+deb10u1_armhf.deb 37688899ba9dc9ab1c178d5ec46da3ed 75468 debug optional libpgtypes3-dbgsym_11.16-0+deb10u1_armhf.deb 5242097e5afc12a998e6c92b312dbb0c 39308 libs optional libpgtypes3_11.16-0+deb10u1_armhf.deb 9341e4791cdde3fd2a15ae739c3d7e47 154616 libdevel optional libpq-dev_11.16-0+deb10u1_armhf.deb 948ab8d3e9e2a238a45ee3a15cf9f84e 287424 debug optional libpq5-dbgsym_11.16-0+deb10u1_armhf.deb 6614c7e8a5689cfc8889a09622d8c727 156380 libs optional libpq5_11.16-0+deb10u1_armhf.deb 1d63ce31aa6b45195a4fc680af7ab00b 19049372 debug optional postgresql-11-dbgsym_11.16-0+deb10u1_armhf.deb 5df728692f3eb433c64494ca82396959 16507 database optional postgresql-11_11.16-0+deb10u1_armhf-buildd.buildinfo b96ccd822e4d37f9f067588eef2448b4 13546784 database optional postgresql-11_11.16-0+deb10u1_armhf.deb ee65c20dcac3c4a4a727a471dac93928 1872380 debug optional postgresql-client-11-dbgsym_11.16-0+deb10u1_armhf.deb 3f2e2f15da741e3aee03f9ef44075180 1350972 database optional postgresql-client-11_11.16-0+deb10u1_armhf.deb b91e8443ecfc01aca3be43473267417f 245532 debug optional postgresql-plperl-11-dbgsym_11.16-0+deb10u1_armhf.deb f992721426893f85136aa1dfde14d8b2 64252 database optional postgresql-plperl-11_11.16-0+deb10u1_armhf.deb 49d126c43277147915bb2d7c3ef62b42 304236 debug optional postgresql-plpython-11-dbgsym_11.16-0+deb10u1_armhf.deb 9860af8dbb8d3b21dfae53d43c361083 52856 database optional postgresql-plpython-11_11.16-0+deb10u1_armhf.deb 8383670fbdf1ab78d3712db7c8953507 330828 debug optional postgresql-plpython3-11-dbgsym_11.16-0+deb10u1_armhf.deb fb25fd7646d6b7c17017bd1c6349dafd 69256 database optional postgresql-plpython3-11_11.16-0+deb10u1_armhf.deb f7d7f4d041122a4ac4a24c243ac0bfcc 98488 debug optional postgresql-pltcl-11-dbgsym_11.16-0+deb10u1_armhf.deb df57b5324113cb10aca2aa79e6cca6c3 39112 database optional postgresql-pltcl-11_11.16-0+deb10u1_armhf.deb 4b7eed80e514264edee9426a8855d999 101256 debug optional postgresql-server-dev-11-dbgsym_11.16-0+deb10u1_armhf.deb d764c7c89ec0dc7844b35af2913fa597 995856 libdevel optional postgresql-server-dev-11_11.16-0+deb10u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnqrK6wYd6gB/ccQF7nhS2cF6ZFEFAmJ71HsACgkQ7nhS2cF6 ZFHNrQ/9E9/PkhM0/l7FrESm+VNGhHFJz9+xHErZY8OJN7vT9p3hs8kMvMdTiM3v 1IAYzT4qgTD0I1Lrz8J2ss5UOuvCIeqYUZ/nvE4/OdNg2GJd+06mgFdKM8pkFXFn uIMEs/qsCOCMqHIU3yYGqH1x65zNziGmyZnzXvtBilEwK1/g6ksheTmXPFs1R0Ly 46FnAljwOUZ2F7C77l6vqJYVV8i17m5aeOgg9M+b3uuNlzvMeFDqPGQ+BfikKrTc e0jOjMQys4O2VwjROl5lC0Wx5Gys/tGVR7+EtR+EGH1AMnl/QfBMiGtPCimXebzr 7seIQdiyBgjXsP+FYdWOc78N6Fff2FojeCmC2q59mE1PQn+swQJfGo9tqIMbsEJV cOVEgwA5uHzcIFCjl9lNzl2VjntikPRPTbxePfQ9XbxJKzDFOV1/zDrXanuFQ7ld j2GZvqo9rTnXePXz1xPr5//zM7/CNgaEwbpaCBJk6qATJhAq3K26YdWb6XJZmC4m +5g2DuzAKDDt40PqlYR5L5dz4koTu8IYEgiQsi1L1qgojCcP7qtmkp0z+M8ene6O GxLEMU+ofKHGnVK/orTn038cBVQy/jcXvwAGc2JaHJlKYk+qq0zQXFWvtKTmZAnN nVayU0TT8KYBM/ScmbexSm5r0wXUwLAfuGkWT++IwzVg/b2Cz3o= =Op/G -----END PGP SIGNATURE-----