New security/bug fix microreleases: 8.1.18, 8.3.8
Bug #430544 reported by
Martin Pitt
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
postgresql-8.1 (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Dapper |
Fix Released
|
High
|
Martin Pitt | ||
Hardy |
Invalid
|
Undecided
|
Unassigned | ||
Intrepid |
Invalid
|
Undecided
|
Unassigned | ||
Jaunty |
Invalid
|
Undecided
|
Unassigned | ||
Karmic |
Invalid
|
Undecided
|
Unassigned | ||
postgresql-8.3 (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Dapper |
Invalid
|
Undecided
|
Unassigned | ||
Hardy |
Fix Released
|
High
|
Martin Pitt | ||
Intrepid |
Fix Released
|
High
|
Martin Pitt | ||
Jaunty |
Fix Released
|
High
|
Martin Pitt | ||
Karmic |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: postgresql-8.3
PostgreSQL recently published new point releases which fix the usual range of important bugs (data loss/wrong results, etc.) and
additionally fix another case of insecure "security definer" functions (the analogon to setuid programs in file system space for SQL
functions) (CVE-2007-6600).
Complete list of changes:
8.1 (dapper): http://
8.3 (lenny/
Related branches
CVE References
Changed in postgresql-8.3 (Ubuntu Jaunty): | |
assignee: | nobody → Martin Pitt (pitti) |
Changed in postgresql-8.1 (Ubuntu Dapper): | |
status: | Triaged → In Progress |
Changed in postgresql-8.1 (Ubuntu Dapper): | |
status: | Fix Committed → Fix Released |
To post a comment you must log in.
Karmic is already fixed, I uploaded the new version to sid and synced:
postgresql-8.3 | 8.3.8-1 | karmic/universe | source, amd64, i386
No regression reports until now, for about a week.