-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 18 May 2021 13:56:18 +0200 Source: postgresql-13 Binary: postgresql-doc-13 Architecture: all Version: 13.4-0+deb11u1 Distribution: bullseye Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Christoph Berg Description: postgresql-doc-13 - documentation for the PostgreSQL database management system Changes: postgresql-13 (13.4-0+deb11u1) bullseye; urgency=medium . * New upstream version. . + Fix mis-planning of repeated application of a projection step (Tom Lane) . The planner could create an incorrect plan in cases where two ProjectionPaths were stacked on top of each other. The only known way to trigger that situation involves parallel sort operations, but there may be other instances. The result would be crashes or incorrect query results. Disclosure of server memory contents is also possible. (CVE-2021-3677) . + Disallow SSL renegotiation more completely (Michael Paquier) . SSL renegotiation has been disabled for some time, but the server would still cooperate with a client-initiated renegotiation request. A maliciously crafted renegotiation request could result in a server crash (see OpenSSL issue CVE-2021-3449). Disable the feature altogether on OpenSSL versions that permit doing so, which are 1.1.0h and newer. Checksums-Sha1: 0c23d6102e595e25ad09c7ff787bac4a36de1205 9177 postgresql-13_13.4-0+deb11u1_all-buildd.buildinfo be587b2a8eac14824076808485b642dbfc53fb51 1921696 postgresql-doc-13_13.4-0+deb11u1_all.deb Checksums-Sha256: 41987d7ffb4b7156e3e4dc86f1934e613dae8ee888e87a673502e2bd86efa046 9177 postgresql-13_13.4-0+deb11u1_all-buildd.buildinfo ee9bca3dc6f86da3906c4e950f655161507e2e3ecca47708e8a48fe22d31ba87 1921696 postgresql-doc-13_13.4-0+deb11u1_all.deb Files: eac3efff189ab168ef3ce19c69ffa87a 9177 database optional postgresql-13_13.4-0+deb11u1_all-buildd.buildinfo 2528585224f676681dcc74113883e85a 1921696 doc optional postgresql-doc-13_13.4-0+deb11u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE8DPOGMaQHbqWZUKpt/b36/s0kbEFAmExi/MACgkQt/b36/s0 kbG0Uw/9Ens4gEUyZFhUq7oynFSpZOApxZxCZN30WBSTEdQPR2U9cBBjOpiMapA1 qUNgr35WzM5SSMgQ2Sdc6mwktfrmmeBVtMabJxQi+YbF+WmtqyU8dg3MrXFSR6k1 YD7UYWdaPeNs9EDkt5RmeRKyUwviGXXykQ52UgfMcIjl32tUXubTgxyxtwytLuvf mli9MdH5yHdq2Swuo0Qv7EZ8Pfxfsc8IzrUqJlKnSCpbCumwt7u4GTIw/9wOCXts XZfBQlw8t94L79nuTQpMRaJbkzUYBK/qXfVOgwLcE2kqK2IKfDt0Y9yV1FjU/ydY yr88nuuRq9myQQEDCmU8pQgmXzeZOLp9udnknJCJVBnyBY7cuxlZTCAnmhGQrgd3 PeqLpFy2MKd9sV9/7UHwBP4Xg9F2B2mObgzYIQlcsA2uTjFllMbVGd+MUGuoe2LH QjbL/9Sem4nsuM7JIk/OXaaEYfWYDJczaKjXa6CK/dCAlKvhgnOgsoSzb+0vOKlQ TUGbopAqZ09K8quI8MPuk+JDbgmLyOGPseVxE6eVTPxY/+RBKhRMEkmFki9l38oy OM2Sh3O2/ZonA3b3soRh9OtaQGT4mgp45mfRVE9o2ZYKCt/tSpTbQ+R0eMOhgUCb tM8XIl0BSuhC0EqrR8YheCDooZP5TeNzWNO4xEDXH8xlTj1pmwE= =6/KY -----END PGP SIGNATURE-----