-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 06 Feb 2024 13:37:19 +0100 Source: postgresql-15 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-15 postgresql-15-dbgsym postgresql-client-15 postgresql-client-15-dbgsym postgresql-plperl-15 postgresql-plperl-15-dbgsym postgresql-plpython3-15 postgresql-plpython3-15-dbgsym postgresql-pltcl-15 postgresql-pltcl-15-dbgsym postgresql-server-dev-15 Architecture: armhf Version: 15.6-0+deb12u1 Distribution: bookworm-security Urgency: medium Maintainer: arm Build Daemon (arm-conova-03) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 15 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-15 - The World's Most Advanced Open Source Relational Database postgresql-client-15 - front-end programs for PostgreSQL 15 postgresql-plperl-15 - PL/Perl procedural language for PostgreSQL 15 postgresql-plpython3-15 - PL/Python 3 procedural language for PostgreSQL 15 postgresql-pltcl-15 - PL/Tcl procedural language for PostgreSQL 15 postgresql-server-dev-15 - development files for PostgreSQL 15 server-side programming Changes: postgresql-15 (15.6-0+deb12u1) bookworm-security; urgency=medium . * New upstream version. . * Tighten security restrictions within REFRESH MATERIALIZED VIEW CONCURRENTLY (Heikki Linnakangas) . One step of a concurrent refresh command was run under weak security restrictions. If a materialized view's owner could persuade a superuser or other high-privileged user to perform a concurrent refresh on that view, the view's owner could control code executed with the privileges of the user running REFRESH. Fix things so that all user-determined code is run as the view's owner, as expected. . The PostgreSQL Project thanks Pedro Gallegos for reporting this problem. (CVE-2024-0985) Checksums-Sha1: 1350a041439c48fa25de05c7639d715450dacbbe 37652 libecpg-compat3-dbgsym_15.6-0+deb12u1_armhf.deb ea768487a89fe952fb80fda8abf039aada33bf88 18904 libecpg-compat3_15.6-0+deb12u1_armhf.deb 61305cc3a8bc21e2c8b0b4846f6f9ba3ffd6d1e6 235584 libecpg-dev-dbgsym_15.6-0+deb12u1_armhf.deb 46a851b2738dc7ff2ac4b5ea486f1b4c77c24b0d 275736 libecpg-dev_15.6-0+deb12u1_armhf.deb 7fde276ff8007702710f6cac67a1b7ac67b9a1da 111512 libecpg6-dbgsym_15.6-0+deb12u1_armhf.deb 416a71b00b9d1dfea0c5d1365f92ec70dec34ed7 51808 libecpg6_15.6-0+deb12u1_armhf.deb 7e9157564b9adafb42c2cbf11b13f847ffb9ade9 88560 libpgtypes3-dbgsym_15.6-0+deb12u1_armhf.deb 2715173a97f5439b1f2e7defe2cb379f63a45a97 38708 libpgtypes3_15.6-0+deb12u1_armhf.deb 68bb118205f3035ec0fc2259b92ec4c8826992b8 131080 libpq-dev_15.6-0+deb12u1_armhf.deb 66b5a845b11cef510a908764decfa02c466398de 273484 libpq5-dbgsym_15.6-0+deb12u1_armhf.deb 4cd7a14906121ee2050d1bebce298e79325d9d02 168168 libpq5_15.6-0+deb12u1_armhf.deb bbe0af3980ed598fb80d48577031a4023e503011 16153672 postgresql-15-dbgsym_15.6-0+deb12u1_armhf.deb 31c2384b38b74cd65d98a1474be0340b4504ecb1 16682 postgresql-15_15.6-0+deb12u1_armhf-buildd.buildinfo 73496f74a1da941f600fecfe5444b272668d0df1 16035468 postgresql-15_15.6-0+deb12u1_armhf.deb 1ded6d9ae20052d74e5397e47cea08272b19de7d 2239788 postgresql-client-15-dbgsym_15.6-0+deb12u1_armhf.deb 3c9cc4a3b0e24306fe09b2b8cd176e1d606c718b 1612192 postgresql-client-15_15.6-0+deb12u1_armhf.deb 94138b4459b96f55a7b5650b41d61966e715356e 182840 postgresql-plperl-15-dbgsym_15.6-0+deb12u1_armhf.deb 420866b4f0330f75a6cce44404e85cdb9af7e393 84840 postgresql-plperl-15_15.6-0+deb12u1_armhf.deb a90b5af541b7f23958691ed44650422cc82acf3c 172048 postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_armhf.deb 20ee24257f2d53b1a5e55d2c38e9695a9b844c27 103328 postgresql-plpython3-15_15.6-0+deb12u1_armhf.deb 165a7b9f80e42e5af61d0aa588a1d41bdb67276d 78176 postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_armhf.deb a3c2fb312ed576727cefbd612bc4841d6247013f 37636 postgresql-pltcl-15_15.6-0+deb12u1_armhf.deb 2ef55550bff34309f5e10abddbcc97290900a8bd 1123316 postgresql-server-dev-15_15.6-0+deb12u1_armhf.deb Checksums-Sha256: d68cca9598cd27d284aaac47ca3785db41d95eca7fa95d0fa850390af5a7f7fd 37652 libecpg-compat3-dbgsym_15.6-0+deb12u1_armhf.deb 385bb29caf1cd1ad6201e92966d27dfc623defb34dff0a12d16e8309094c4978 18904 libecpg-compat3_15.6-0+deb12u1_armhf.deb 339220d7518c512c21030aab87a56122d846a1846096afb65a6c1e2e12d3d416 235584 libecpg-dev-dbgsym_15.6-0+deb12u1_armhf.deb b9882f8ebdefb7615961e017414fdc990589732980aad54db379f5d799c2571b 275736 libecpg-dev_15.6-0+deb12u1_armhf.deb 9b5f43ab3fc963162c74be8f9e0159269ad0e5d768e7c18dd627ab6c3d9fb0e6 111512 libecpg6-dbgsym_15.6-0+deb12u1_armhf.deb e6eebaa5203eeb554c9e9f8b59b9034a6c6290b6933fae27a55d42f96bfbddd6 51808 libecpg6_15.6-0+deb12u1_armhf.deb 9e68cba39e953f6d4d4c2faef5d8e5e4bf501bbcb73f3046509532d77646e9fc 88560 libpgtypes3-dbgsym_15.6-0+deb12u1_armhf.deb bed62228cdf572b479de7ef19fb48c7f0951ad5f1da0c5268b015251d4c757c3 38708 libpgtypes3_15.6-0+deb12u1_armhf.deb 4f51c61346924bc2f0afee091e7a6ada494e3aca02944f1d785f36e5c11d6597 131080 libpq-dev_15.6-0+deb12u1_armhf.deb d5b196c091eb05fdc0b7ff5cabc0366fb24d2e2158fd840674c2c9b1ecd8a949 273484 libpq5-dbgsym_15.6-0+deb12u1_armhf.deb 4ac1e6235e6f79d9d18bf3bdeff540c3c1e01fffe85813550c095f2a4a4cd3d3 168168 libpq5_15.6-0+deb12u1_armhf.deb 913730720528c39142cd3d6b89512794ac05317f9a3c0db65a0cc1c0ab68f6e8 16153672 postgresql-15-dbgsym_15.6-0+deb12u1_armhf.deb 671f7b6db8fb408cbb3842295e50b2e5b9c83f8e13fd528ea27faa0959c19165 16682 postgresql-15_15.6-0+deb12u1_armhf-buildd.buildinfo 2f211e985954f46046b0fc3c9f1e6b2c5180fcf1cab58a302ac9f9f8d315e3f2 16035468 postgresql-15_15.6-0+deb12u1_armhf.deb f110ffe054ed57f57718cca5deb732a6d7b2a4e106a275866e0af420ef6c86e2 2239788 postgresql-client-15-dbgsym_15.6-0+deb12u1_armhf.deb ea23cb84838cf502ab6b7f4d25e8af678af47f8b1807114637d04e4e34d269f6 1612192 postgresql-client-15_15.6-0+deb12u1_armhf.deb 1e6f5dab6983b535f0ee6d28abfb654ba3a27ba9cdb819817d49131cfa4d84f2 182840 postgresql-plperl-15-dbgsym_15.6-0+deb12u1_armhf.deb 050df07148522b8c3129817f6907dfa0b221b9fce4ce402e595dcd9d4b45621f 84840 postgresql-plperl-15_15.6-0+deb12u1_armhf.deb c13c35a308515646abb37d52de2f1ebff843b966d2003fba4634b2c20bf4444e 172048 postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_armhf.deb 1c54cdbb1c51e5fb527e53210e04ee98db4b3cd2595028b56bb4a91296be58d8 103328 postgresql-plpython3-15_15.6-0+deb12u1_armhf.deb 184408983c33b179e80e198e8e83abac0939a3b5d57c6abe236d2f972299d6ff 78176 postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_armhf.deb b116ac7be90d942a8912d1a7457284d1b6ed63b98fd2f3c89bcb3c6ac451228e 37636 postgresql-pltcl-15_15.6-0+deb12u1_armhf.deb 512717d63decebde95bb666c9d66207bda9ef97d91b9dfcfae526fc463995191 1123316 postgresql-server-dev-15_15.6-0+deb12u1_armhf.deb Files: 967aa1c91ea09daf2341f314fa43ff1b 37652 debug optional libecpg-compat3-dbgsym_15.6-0+deb12u1_armhf.deb 40c5b610c977debd21a21b21fa852cc5 18904 libs optional libecpg-compat3_15.6-0+deb12u1_armhf.deb e9fb6d7de2103ff9d4c2e8e74be2d4fd 235584 debug optional libecpg-dev-dbgsym_15.6-0+deb12u1_armhf.deb cd6e6f02fdeb40b478f47de2b7cd0799 275736 libdevel optional libecpg-dev_15.6-0+deb12u1_armhf.deb e6c9d0b31df01bd2a637d4165b52d2ef 111512 debug optional libecpg6-dbgsym_15.6-0+deb12u1_armhf.deb 4559b82a6cd8ece67386d65823e61549 51808 libs optional libecpg6_15.6-0+deb12u1_armhf.deb 1620413f09912f1e21e7808f162eab17 88560 debug optional libpgtypes3-dbgsym_15.6-0+deb12u1_armhf.deb 3f84e6067e416a58cc0ce9c7d23eced7 38708 libs optional libpgtypes3_15.6-0+deb12u1_armhf.deb 314ca780033753b389cf08a1dde485ef 131080 libdevel optional libpq-dev_15.6-0+deb12u1_armhf.deb 3ecca9e3831108f9cb81d65add1c8657 273484 debug optional libpq5-dbgsym_15.6-0+deb12u1_armhf.deb edd6a40455c5e33fd1914a2a13f129a5 168168 libs optional libpq5_15.6-0+deb12u1_armhf.deb 8499665cac0fbb98d99dada0e0f58b94 16153672 debug optional postgresql-15-dbgsym_15.6-0+deb12u1_armhf.deb f999e7d1c217c7bd4f346bd6558fd7cf 16682 database optional postgresql-15_15.6-0+deb12u1_armhf-buildd.buildinfo b7a15f4a624f2ee35ef71e1f9994aaaa 16035468 database optional postgresql-15_15.6-0+deb12u1_armhf.deb 9c6e1f1539bc0dbda6bb501006e60ca7 2239788 debug optional postgresql-client-15-dbgsym_15.6-0+deb12u1_armhf.deb 5240000968f7b207aa31671b6c399a59 1612192 database optional postgresql-client-15_15.6-0+deb12u1_armhf.deb ade98ac193ed6e1c07a8c10fd06456df 182840 debug optional postgresql-plperl-15-dbgsym_15.6-0+deb12u1_armhf.deb dd201ab6ff11a56dbb407e34a11acd27 84840 database optional postgresql-plperl-15_15.6-0+deb12u1_armhf.deb 5ba91719d74119cf06b8a8f55a6c0e5b 172048 debug optional postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_armhf.deb 1f26f43e0f45ff06c4a6edc6e140dcfd 103328 database optional postgresql-plpython3-15_15.6-0+deb12u1_armhf.deb 551b16b5f55c11f81fd569522aae07ad 78176 debug optional postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_armhf.deb c72120c38418fb71d1a61a7f802b15b5 37636 database optional postgresql-pltcl-15_15.6-0+deb12u1_armhf.deb b875389d8fec46480327d596ba68f614 1123316 libdevel optional postgresql-server-dev-15_15.6-0+deb12u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEU81tY/BC8e+eAeWhLffeOnPnbLUFAmXMwZMACgkQLffeOnPn bLWL8g//S/80SD0rWSa8NRZ1zLpYJLHaGCaRQF6WBgTdF6oZvwI7y64pdwwaDEOz IdBPTMfiT5dMrI1DmVUKZZAgpZh1rsKbk/WMWnAOg/7AOIOf0r80x96eznQQ8wQ+ 5Qf248iAcZUVF3xGpgvOZJQnzaj6owc35dK5kUEs5lMQ3Bt4npTKB2Q5lXkFu7r4 P6HKRZpXOD3qFzagtO1BJ4qJQQavAAGCEqDKqWzyprOEFTXtwf9IHfSMbOU4LBtk PRRDH3O7uH5ysY/GhtJRNbzJPvPw78SDrEBE0IVMxoVxSATmGQjmXPc/4DJMlOZd YZOUwM1qV/wMU0iboPXDdRp1j9l7kURxQZ/PCcnw37GOj64a5h7ru8r/JzSL5fcn qM26zyYhF7k0gwS44lOnjBIpSU1LRhXVdvd6rtEKMjNsIZj/Ru77jjV9tht6gdDL YjXbSREdAss0fQKf62JztnlHXBTJ5ELG6m1vIFCnDkJjzCgMdnODoAFjolgqhF6V mbqyM6QTdm0ZnigtcAM3HC1pcpqZwhbSLLoYnai+8ALRckkFaMVVmtojPlFAM3hg RDHU5cHKKYscS/RHnmICdkmSjxl10PR+W9TtTEySmRW1bUgNtvSHQjBN/A/5F7P8 UY/CcZdNpPMR5GClqbo5wxKzfQIFLJwupT83+2M8jW61txwcwOQ= =xGE1 -----END PGP SIGNATURE-----