-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 11 May 2022 15:03:33 +0200 Source: postgresql-13 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-13 postgresql-13-dbgsym postgresql-client-13 postgresql-client-13-dbgsym postgresql-plperl-13 postgresql-plperl-13-dbgsym postgresql-plpython3-13 postgresql-plpython3-13-dbgsym postgresql-pltcl-13 postgresql-pltcl-13-dbgsym postgresql-server-dev-13 Architecture: armhf Version: 13.7-0+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: arm Build Daemon (arm-conova-01) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 13 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-13 - The World's Most Advanced Open Source Relational Database postgresql-client-13 - front-end programs for PostgreSQL 13 postgresql-plperl-13 - PL/Perl procedural language for PostgreSQL 13 postgresql-plpython3-13 - PL/Python 3 procedural language for PostgreSQL 13 postgresql-pltcl-13 - PL/Tcl procedural language for PostgreSQL 13 postgresql-server-dev-13 - development files for PostgreSQL 13 server-side programming Changes: postgresql-13 (13.7-0+deb11u1) bullseye-security; urgency=medium . * New upstream release. . * Confine additional operations within security restricted operation sandboxes (Sergey Shinderuk, Noah Misch) . Autovacuum, CLUSTER, CREATE INDEX, REINDEX, REFRESH MATERIALIZED VIEW, and pg_amcheck activated the security restricted operation protection mechanism too late, or even not at all in some code paths. A user having permission to create non-temporary objects within a database could define an object that would execute arbitrary SQL code with superuser permissions the next time that autovacuum processed the object, or that some superuser ran one of the affected commands against it. . The PostgreSQL Project thanks Alexander Lakhin for reporting this problem. (CVE-2022-1552) . * Fix default signature length for gist_ltree_ops indexes (Tomas Vondra, Alexander Korotkov) . The default signature length (hash size) for GiST indexes on ltree columns was accidentally changed while upgrading that operator class to support operator class parameters. If any operations had been done on such an index without first upgrading the ltree extension to version 1.2, they were done assuming that the signature length was 28 bytes rather than the intended 8. This means it is very likely that such indexes are now corrupt. For safety we recommend re-indexing all GiST indexes on ltree columns after installing this update. (Note that GiST indexes on ltree[] columns, that is arrays of ltree, are not affected.) Checksums-Sha1: aa596cfce3ae2ec1a7152fc4d33befc570734e22 37284 libecpg-compat3-dbgsym_13.7-0+deb11u1_armhf.deb cb9885a7a83b6c892b8fd575ea3d4b2e0413a00e 22216 libecpg-compat3_13.7-0+deb11u1_armhf.deb c9f5bf10e00884b90f3c26dadb428df7275475e5 217224 libecpg-dev-dbgsym_13.7-0+deb11u1_armhf.deb 22b1e67c5fb65ad247640a4a691b2128594e1396 264344 libecpg-dev_13.7-0+deb11u1_armhf.deb a350a955f856665ceb40a86d842870f59405800c 108220 libecpg6-dbgsym_13.7-0+deb11u1_armhf.deb 56f17e6ba12fbb34a56b4f7b1bf46759f921f643 52468 libecpg6_13.7-0+deb11u1_armhf.deb a7f0d8d137a972c487afdfb68d344f8f5c6f12c7 86312 libpgtypes3-dbgsym_13.7-0+deb11u1_armhf.deb d83348e8d5eeb22ab2a7e7d08833be90b936b334 41632 libpgtypes3_13.7-0+deb11u1_armhf.deb f98aebf816f136895c5ec1a5f285bc905aabd462 128236 libpq-dev_13.7-0+deb11u1_armhf.deb 52d7d37d4cd92c02ff9f1d76e3173de6ad6d83b3 248116 libpq5-dbgsym_13.7-0+deb11u1_armhf.deb b9f5a87553dbe77e29c6bb867f74f686f62bb033 163932 libpq5_13.7-0+deb11u1_armhf.deb e5e16783da49996eaded756405b7e2fdde90af3a 14138280 postgresql-13-dbgsym_13.7-0+deb11u1_armhf.deb 6114b8cb91f492ea169e610747e29946575e5b57 15826 postgresql-13_13.7-0+deb11u1_armhf-buildd.buildinfo 40531665b195a5db0732ea551de7f4e4c3ee614e 14541868 postgresql-13_13.7-0+deb11u1_armhf.deb 97fbd0479797d6083bb4e7afd5a865e2c9e0df0a 1826856 postgresql-client-13-dbgsym_13.7-0+deb11u1_armhf.deb af49931ce9a7fb997431ef079adf1a56328be068 1452968 postgresql-client-13_13.7-0+deb11u1_armhf.deb 03c0026ddb43426b3792119721ceb508baf359cf 152492 postgresql-plperl-13-dbgsym_13.7-0+deb11u1_armhf.deb 3737893538fc02c4cd55fa6de301314752d9e8a0 83356 postgresql-plperl-13_13.7-0+deb11u1_armhf.deb 668069dce193af3b191b91e6a9b33b618e08309a 153976 postgresql-plpython3-13-dbgsym_13.7-0+deb11u1_armhf.deb 0fb2b63a9539c2f2bde891ed70b0e5682a65d8ce 100308 postgresql-plpython3-13_13.7-0+deb11u1_armhf.deb 7e65ff7c5874b9df533815efc21037d64a78c6cd 72308 postgresql-pltcl-13-dbgsym_13.7-0+deb11u1_armhf.deb d2f311ceaaecb6e0367a190bb248bafbbfba09e4 38360 postgresql-pltcl-13_13.7-0+deb11u1_armhf.deb 6ad1a514e4b98cbb8f6ff318933ea5d1456c3723 1022544 postgresql-server-dev-13_13.7-0+deb11u1_armhf.deb Checksums-Sha256: c099075997fde9d1a8a669e24f2a21ee842aae557fd7c7d8d5f26c4ab2c2761e 37284 libecpg-compat3-dbgsym_13.7-0+deb11u1_armhf.deb 4d52c4e988247f7933cadd5f48fe053124449fae3a4886b30b23e339b71e1591 22216 libecpg-compat3_13.7-0+deb11u1_armhf.deb b83f9b68256cff627548dec7ae7f4d1bb6064512aee5af70621d0dd7b58729dd 217224 libecpg-dev-dbgsym_13.7-0+deb11u1_armhf.deb b162b8ceed687da3a768872f1d2a181932b921d6abe08898ad61f093b354baee 264344 libecpg-dev_13.7-0+deb11u1_armhf.deb b197bd5e952acb9cb6c4a73fa60a83028731e603b43748fecc634549339384c8 108220 libecpg6-dbgsym_13.7-0+deb11u1_armhf.deb 017c8c407ef667d8d90bc68dac600cf7f1f0828bca87bdabed29af7279243e85 52468 libecpg6_13.7-0+deb11u1_armhf.deb 5f381ec94fbed408fa2bd3270e0f0c1d73d7872e280c0d7ad7c569c8fc420c62 86312 libpgtypes3-dbgsym_13.7-0+deb11u1_armhf.deb 81a6d2499469cc06f0b1ff234efa9f2f9f13121850384cd2f25b4f8ed4845a59 41632 libpgtypes3_13.7-0+deb11u1_armhf.deb 9d232b9c703b8e84c0d8497df220edc23b5af1880d45f2df9f0b49f8eaf9539c 128236 libpq-dev_13.7-0+deb11u1_armhf.deb 17173d1cb433b9047419644dd5ecc6ec190c5ce291aa18208dc7ae1a0ffb0934 248116 libpq5-dbgsym_13.7-0+deb11u1_armhf.deb db5ae4ee00473e0f53e0547748086f3f253ab9dd9b0bec9bbe12ff364540d537 163932 libpq5_13.7-0+deb11u1_armhf.deb 5b74fd1d1714121b4287601c5e44e01c4e7c269e34656c818746cc6ca20e42ee 14138280 postgresql-13-dbgsym_13.7-0+deb11u1_armhf.deb d4c852af3bf09aa2bca5990d4ac9578ece3fc4eb78288169d7536199c3467d2b 15826 postgresql-13_13.7-0+deb11u1_armhf-buildd.buildinfo b5c6e4b82c6c60967ce3beda09f4976db3e79e9b015695775329027d53c135af 14541868 postgresql-13_13.7-0+deb11u1_armhf.deb 8db90abe76f33fb748100723c54116b55bef2d734988b9c9b14a3da86ec8bae7 1826856 postgresql-client-13-dbgsym_13.7-0+deb11u1_armhf.deb c906c7e63ad761b7895b887475cc2a7f11b63e75383c4be335d2285c679dadbb 1452968 postgresql-client-13_13.7-0+deb11u1_armhf.deb ba9810f043596309888bd07e51c2f4403cedc6a012f3d55381453cbe50263659 152492 postgresql-plperl-13-dbgsym_13.7-0+deb11u1_armhf.deb 41fcfe5da1ce0d34cfbcea85a76958de1403734b96e98c02a8c176e10de5bfc7 83356 postgresql-plperl-13_13.7-0+deb11u1_armhf.deb 1d0de93b8d7999ffedad3e2fe1a4a71d3ddd4fa14f915567e2fd927675047362 153976 postgresql-plpython3-13-dbgsym_13.7-0+deb11u1_armhf.deb 6d70265e37713c40d5de12879ffaef33904ff9e54ad31dd89f38c2b85b47ed87 100308 postgresql-plpython3-13_13.7-0+deb11u1_armhf.deb 697b82972a8d92985cee7b2657aecf0cea9ad733191f4753b56577c6bc9d6fc4 72308 postgresql-pltcl-13-dbgsym_13.7-0+deb11u1_armhf.deb 1626db1db44bc273eb37420335b2e9c048d86af9a4ddfb3b82b06ea4051586a3 38360 postgresql-pltcl-13_13.7-0+deb11u1_armhf.deb 1c31abc30d939de0b85fa7d21792b55be1e835b1ec9949591b384bac736e308e 1022544 postgresql-server-dev-13_13.7-0+deb11u1_armhf.deb Files: ea7dfc797ebd9dd30aa445d385dfd994 37284 debug optional libecpg-compat3-dbgsym_13.7-0+deb11u1_armhf.deb d673b14c724cfa56b425229c7e296ba6 22216 libs optional libecpg-compat3_13.7-0+deb11u1_armhf.deb 3a2d01ea0c8a1132f2d09299e2a3bb9c 217224 debug optional libecpg-dev-dbgsym_13.7-0+deb11u1_armhf.deb 0d3940cf8a1b47c21d5cdc08547a36a6 264344 libdevel optional libecpg-dev_13.7-0+deb11u1_armhf.deb 7e5cad41415b9fc93772c20e2346aa3f 108220 debug optional libecpg6-dbgsym_13.7-0+deb11u1_armhf.deb 45a9273f2fa6de1d83d8e1ea7ce74aae 52468 libs optional libecpg6_13.7-0+deb11u1_armhf.deb b30ee27a4d018080d344410001cd1adc 86312 debug optional libpgtypes3-dbgsym_13.7-0+deb11u1_armhf.deb 6f607fcb0da45054c6b68974187de9cc 41632 libs optional libpgtypes3_13.7-0+deb11u1_armhf.deb 9177b4c1b0912b77a61a1a87cb71f427 128236 libdevel optional libpq-dev_13.7-0+deb11u1_armhf.deb 0a48969c81116443e2de581f7fd4f09b 248116 debug optional libpq5-dbgsym_13.7-0+deb11u1_armhf.deb 10a1d7b88f93938a5c0ca2b879bb3aa2 163932 libs optional libpq5_13.7-0+deb11u1_armhf.deb 03df1e9f41bb82aee48a76d8f786b55c 14138280 debug optional postgresql-13-dbgsym_13.7-0+deb11u1_armhf.deb a2b1f0fe9a359a80b6d51acefa9bdb2b 15826 database optional postgresql-13_13.7-0+deb11u1_armhf-buildd.buildinfo c4932a07cc5ebe8826cd8407ed9ff179 14541868 database optional postgresql-13_13.7-0+deb11u1_armhf.deb b90d1a0b4d4be26e7e1c5522df7508cb 1826856 debug optional postgresql-client-13-dbgsym_13.7-0+deb11u1_armhf.deb 4e5747d728f9698993005a10b4fadb9c 1452968 database optional postgresql-client-13_13.7-0+deb11u1_armhf.deb a44daeaf838b9665ba22521f551dfdbd 152492 debug optional postgresql-plperl-13-dbgsym_13.7-0+deb11u1_armhf.deb fd5cbd9913639a5f29d31edda643d164 83356 database optional postgresql-plperl-13_13.7-0+deb11u1_armhf.deb 6ddc5cf6488f355a874c36109618a239 153976 debug optional postgresql-plpython3-13-dbgsym_13.7-0+deb11u1_armhf.deb 98eeabf6c7d250927430c9a2149c04ba 100308 database optional postgresql-plpython3-13_13.7-0+deb11u1_armhf.deb e0aca68ec6212b16106174b20ce3d6d9 72308 debug optional postgresql-pltcl-13-dbgsym_13.7-0+deb11u1_armhf.deb 5827786b5e0381a77704b02deef5d8e0 38360 database optional postgresql-pltcl-13_13.7-0+deb11u1_armhf.deb 4733c9fc27b0a06643a067631a237eac 1022544 libdevel optional postgresql-server-dev-13_13.7-0+deb11u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE9yjyO7AjQ4rTmCmjz9oCowfyqlsFAmJ70R0ACgkQz9oCowfy qltmHQ/+NdFqFFwNHCwo1C+bJPmoIjYu++lVtXLGRYaHLNoi0RjVWOPtFxuPub3S iicWm+MXEljPKMtsfOlD76/6nKdJHszABPb74X0pI7ChCG7hFQeGISdpOxW1dDUH 5BdJJp+jijPxlglMkCzNECeDzQnjjtT/PrAGi7bgSAt0yWgcz9Hr73HQhSngrDsq 2keWgPE3zW5qympp3hFrB398RJNhNE6x9aSXQ4dJNHkaxnlOnX8nRu7Ld2BtgzMl YXS9kd0Mi+3p9V2D7navl4mdNrsjx8OGwJ/H45LR3EkhPuYgmmf6bMPS4vFsVs70 BErc3Mkl+pOCd586akndg+wDNpj+FYfOCPzHFA4Pd8a2f/Jx8kWbs0DjwaejrBEa dHeY7BtyeGrIg/USCyvGbWo9Kw9R0UCISOK64kScIKzOM6LBv/xBmVMw/7wl+3E/ 5CIFbLjnOiL5ILoYJfqOwvbuBEYVGpWvg68c0PcvqVgjS8VChiyERokLGEthxGBl 3IhyCDdqK2RMB1En62gRGNFo5vR7AhPkZHZfKkvti2efmvbqrIZvkERUN2bEQKFb 9GBFzjiGG0mHrIT/R/dnki7NqR6qKL187oTcGwGy4B3cEcQ418QqZtrgyRUMDysX J9jODmV6WghMgZz8286D3GOc83+75jhmHQMlP1ZAiRPqUpaGpng= =XDoi -----END PGP SIGNATURE-----