-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 06 Feb 2024 13:54:51 +0100 Source: postgresql-13 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-13 postgresql-13-dbgsym postgresql-client-13 postgresql-client-13-dbgsym postgresql-plperl-13 postgresql-plperl-13-dbgsym postgresql-plpython3-13 postgresql-plpython3-13-dbgsym postgresql-pltcl-13 postgresql-pltcl-13-dbgsym postgresql-server-dev-13 Architecture: arm64 Version: 13.14-0+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: arm Build Daemon (arm-ubc-03) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 13 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-13 - The World's Most Advanced Open Source Relational Database postgresql-client-13 - front-end programs for PostgreSQL 13 postgresql-plperl-13 - PL/Perl procedural language for PostgreSQL 13 postgresql-plpython3-13 - PL/Python 3 procedural language for PostgreSQL 13 postgresql-pltcl-13 - PL/Tcl procedural language for PostgreSQL 13 postgresql-server-dev-13 - development files for PostgreSQL 13 server-side programming Changes: postgresql-13 (13.14-0+deb11u1) bullseye-security; urgency=medium . * New upstream version. . * Tighten security restrictions within REFRESH MATERIALIZED VIEW CONCURRENTLY (Heikki Linnakangas) . One step of a concurrent refresh command was run under weak security restrictions. If a materialized view's owner could persuade a superuser or other high-privileged user to perform a concurrent refresh on that view, the view's owner could control code executed with the privileges of the user running REFRESH. Fix things so that all user-determined code is run as the view's owner, as expected. . The PostgreSQL Project thanks Pedro Gallegos for reporting this problem. (CVE-2024-0985) Checksums-Sha1: 174a3e09f2b30ae8b26a28f786f37d963c476a2b 39304 libecpg-compat3-dbgsym_13.14-0+deb11u1_arm64.deb 3bfc179716024530b9e9023c63b576e82ee4ab47 26320 libecpg-compat3_13.14-0+deb11u1_arm64.deb 1b53878d4b321905e57a0ebdebcb720392190cdc 221564 libecpg-dev-dbgsym_13.14-0+deb11u1_arm64.deb ef07bfb9efbfc1464d7945f303c6f25337c40fcf 271264 libecpg-dev_13.14-0+deb11u1_arm64.deb 4444f5607c5f4f5e421f11b04d5d1f72d2bac4c7 113652 libecpg6-dbgsym_13.14-0+deb11u1_arm64.deb 283f789d62f2c1036573d6a821284dbb5c93cdad 60288 libecpg6_13.14-0+deb11u1_arm64.deb 2eda82fc07fd32a5776233ae2402983d42c18a09 89012 libpgtypes3-dbgsym_13.14-0+deb11u1_arm64.deb 084f25b36a498de33139ddbac6a9e5b4377104b0 46688 libpgtypes3_13.14-0+deb11u1_arm64.deb 38935722bf88925245cb0fcf5e2dfd9430c24100 139080 libpq-dev_13.14-0+deb11u1_arm64.deb e70cec996df03a1ea167dba010120f4413e57133 255860 libpq5-dbgsym_13.14-0+deb11u1_arm64.deb b43371f3b9595920c055442272e52c40984b32a8 174980 libpq5_13.14-0+deb11u1_arm64.deb bf858542a9d8fec11d702c500ea3621cb0d9b24e 14656900 postgresql-13-dbgsym_13.14-0+deb11u1_arm64.deb 76199655cd61a5c113e9bcd65cdffd16d389b994 16253 postgresql-13_13.14-0+deb11u1_arm64-buildd.buildinfo a4f92f73fa4b28d3e8d09382e93faaefcb959149 14727992 postgresql-13_13.14-0+deb11u1_arm64.deb ca5abe1574b733daa56bd863f2f12e13f06c589e 1882616 postgresql-client-13-dbgsym_13.14-0+deb11u1_arm64.deb 9bcc5635d6f89cbd523e41bf5610e49534689dcd 1475852 postgresql-client-13_13.14-0+deb11u1_arm64.deb 99f3982de65b380def434264be44e5d7270026a7 155372 postgresql-plperl-13-dbgsym_13.14-0+deb11u1_arm64.deb 8c7b0caeb6ae5030ca78620e636aae2c8a495eee 86336 postgresql-plperl-13_13.14-0+deb11u1_arm64.deb 47da283a91eaf76c90dc9eec0024e7c18635f662 158132 postgresql-plpython3-13-dbgsym_13.14-0+deb11u1_arm64.deb bd184a7f51fdc9bb93a40755279547fffbdf1e84 105912 postgresql-plpython3-13_13.14-0+deb11u1_arm64.deb 6beba86b68483cd860e25a7ba13b23b8bdb0ad49 73896 postgresql-pltcl-13-dbgsym_13.14-0+deb11u1_arm64.deb a8300a34cf6e0db7ed4b1f39dead9a1dcf78f9ab 42160 postgresql-pltcl-13_13.14-0+deb11u1_arm64.deb 291f4d0b8ccea6ec51748f6c56d686382706d48e 1038612 postgresql-server-dev-13_13.14-0+deb11u1_arm64.deb Checksums-Sha256: a84dc836effa9628cb2d865128d6a2d23513006a4c92523f623e7a7f62b253d6 39304 libecpg-compat3-dbgsym_13.14-0+deb11u1_arm64.deb 5ad56ab4262dc33779ab729600bb51733b12237559d1b70cf3b777c235dea087 26320 libecpg-compat3_13.14-0+deb11u1_arm64.deb c07a81cd0490d78f42b9960f503324886f55360f95ebdf65bedf6e1f2223e8fb 221564 libecpg-dev-dbgsym_13.14-0+deb11u1_arm64.deb a3e6f722652f13c86fc53f2c7e1360162ba866b9bd7c2056f88980c4e426747c 271264 libecpg-dev_13.14-0+deb11u1_arm64.deb c6f28f29e2aa28a026d35df0fe646d4047324294fbca6305cf42b3ef34389e75 113652 libecpg6-dbgsym_13.14-0+deb11u1_arm64.deb fa0a183931501c1b29215333df825f3361684e14922a55e74725a530102560f6 60288 libecpg6_13.14-0+deb11u1_arm64.deb c427965d2c7a6b26a1de41871b869a2e2bb497cae570f3f33d109364fbb7ab70 89012 libpgtypes3-dbgsym_13.14-0+deb11u1_arm64.deb 6047172fe3bcd5f765aff50cf7d2071ae62059ad33ba0d74c662dd9e91127186 46688 libpgtypes3_13.14-0+deb11u1_arm64.deb b377392f4c0b397e8900c6cdc58c4098d86facbc8305daa7122f722ef2c4cc04 139080 libpq-dev_13.14-0+deb11u1_arm64.deb 393df55daf6e9512a7d503fa8d34005c429ade74ae5612164866df6e3920566b 255860 libpq5-dbgsym_13.14-0+deb11u1_arm64.deb 5a52cfbc59d0ea9f2e6ea4ee06a77d6eeadbdcfa482737e3aed0719d35b3c295 174980 libpq5_13.14-0+deb11u1_arm64.deb f972d1ec00c969f6df94768755fc7233e022cdaabd3c436dfd745d4282f7faee 14656900 postgresql-13-dbgsym_13.14-0+deb11u1_arm64.deb ff0e74941ffd78a0da08144f231d7ee0b2f1a9fb5f24615f7e41d5b599b41712 16253 postgresql-13_13.14-0+deb11u1_arm64-buildd.buildinfo 4480f71722f9d109799e696ecdbb5cddd7e7c7111694856594e242c5f9a8e73a 14727992 postgresql-13_13.14-0+deb11u1_arm64.deb 31d66ee24b70abea893cb17e7890c43b625161a0211b7fcce01df1b51142d042 1882616 postgresql-client-13-dbgsym_13.14-0+deb11u1_arm64.deb b1ae167cf4891cf1ac2a9d247195447212d6bb7379ac6a4c1ce60bc21ec9e66e 1475852 postgresql-client-13_13.14-0+deb11u1_arm64.deb 6bbdc400be94aeb996a1f19347afc5c637437ae70294c90b59b779c840baa012 155372 postgresql-plperl-13-dbgsym_13.14-0+deb11u1_arm64.deb 228c31bf7e6494e111bf1b4eccf798a94867ec57d7876662606fd38b904c1bce 86336 postgresql-plperl-13_13.14-0+deb11u1_arm64.deb 4e09a4011b633f0b644edee6468b86062b3bb0147cc4166a3ff13dcbd63ffb86 158132 postgresql-plpython3-13-dbgsym_13.14-0+deb11u1_arm64.deb 3452abeed4052bcd2ebd3a50f81f9890823f9866aaf882bd7fb1354f8edeb913 105912 postgresql-plpython3-13_13.14-0+deb11u1_arm64.deb 6e7f2d7845d417c65576723f85d6c49bb75c54125b5859211eaf15b4b8fe6df9 73896 postgresql-pltcl-13-dbgsym_13.14-0+deb11u1_arm64.deb ad3d6188101b350a9e557a0e31d05a1ee00d0f02e318f94035624c542db379dc 42160 postgresql-pltcl-13_13.14-0+deb11u1_arm64.deb da02804f91c43235d823449080a67ae02bec53ff183b33f643b7eb997a6c1f30 1038612 postgresql-server-dev-13_13.14-0+deb11u1_arm64.deb Files: 5c140e9dcc29fdb9dd2db0795747aa80 39304 debug optional libecpg-compat3-dbgsym_13.14-0+deb11u1_arm64.deb c93f4d728cd75bbb3c07fe286ee577ba 26320 libs optional libecpg-compat3_13.14-0+deb11u1_arm64.deb fd048e85d435d7fa371c46833accd2fe 221564 debug optional libecpg-dev-dbgsym_13.14-0+deb11u1_arm64.deb 80782b7ec200b6c7504f60d770700a7b 271264 libdevel optional libecpg-dev_13.14-0+deb11u1_arm64.deb 2651aa4ba5718717287ed2a5ab8f6756 113652 debug optional libecpg6-dbgsym_13.14-0+deb11u1_arm64.deb aaad01348ab25701dd31b0b2ad77971e 60288 libs optional libecpg6_13.14-0+deb11u1_arm64.deb 34630675bf4e76096dd3287e8e413989 89012 debug optional libpgtypes3-dbgsym_13.14-0+deb11u1_arm64.deb 2e4a2f29ff150d28de4361f840503b3f 46688 libs optional libpgtypes3_13.14-0+deb11u1_arm64.deb c6e437bcac504d2a466476bb5ce6241a 139080 libdevel optional libpq-dev_13.14-0+deb11u1_arm64.deb f370d01a57a698cf66015613658a5abc 255860 debug optional libpq5-dbgsym_13.14-0+deb11u1_arm64.deb 761b6092c03bc4eb00e211368520b354 174980 libs optional libpq5_13.14-0+deb11u1_arm64.deb f8feb943ee5b1b6c03831994487fc65a 14656900 debug optional postgresql-13-dbgsym_13.14-0+deb11u1_arm64.deb 7fedf9e225289e3864c4502623ae16c3 16253 database optional postgresql-13_13.14-0+deb11u1_arm64-buildd.buildinfo 49cafc0e0a99bf4ddd66ae20e8c15cd8 14727992 database optional postgresql-13_13.14-0+deb11u1_arm64.deb 16c3c66a513ea556cd624b3eed847c9f 1882616 debug optional postgresql-client-13-dbgsym_13.14-0+deb11u1_arm64.deb 1c2100c45fe06e07b109412e4a90b403 1475852 database optional postgresql-client-13_13.14-0+deb11u1_arm64.deb e9aafefd62af3a4cc7e69d5f358a8ee3 155372 debug optional postgresql-plperl-13-dbgsym_13.14-0+deb11u1_arm64.deb a243c98978423606549b00d819ae4847 86336 database optional postgresql-plperl-13_13.14-0+deb11u1_arm64.deb 1ddea816adfed7a87ef47fe6f27e245b 158132 debug optional postgresql-plpython3-13-dbgsym_13.14-0+deb11u1_arm64.deb 7c79c9aa658193b5bd9891844970b570 105912 database optional postgresql-plpython3-13_13.14-0+deb11u1_arm64.deb 18e21e3a21ac48a9e2cf036dc2b8a51a 73896 debug optional postgresql-pltcl-13-dbgsym_13.14-0+deb11u1_arm64.deb 3ccfbbf56be6c910bede3f3fe698c006 42160 database optional postgresql-pltcl-13_13.14-0+deb11u1_arm64.deb e4ad42aee80e841bbb38a680ab88f545 1038612 libdevel optional postgresql-server-dev-13_13.14-0+deb11u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEV2QMHg/7F9BmqsxiZLztDiV8cXAFAmXM0T4ACgkQZLztDiV8 cXCeUA/+IgtGu+B3UDEyoqE1qwoGqxo9omqGzF7BpaICahJytNuVyr9y8XdzfKop jdSJ8O77aNhOF/UH+1wALpwTJkXShiWQIc099QEvSsWHN0J0bdNWeVWsGu1jRy8O Ulgo64+n6+Ui3w9mnkiA/ltiSftX0JppY7Ejx955nMKdwZjZg+Pd66ADkcLn0iIj h/5oW9NAQ/r27hXiy7Ll9+TEgDd+Efub+NzE0rhf8ijmgnybVHPZi4Y1hf07Pwer hjaUKicH5w2ZldoP+/bJdy+INY36FDy+cTYMcaymRwdG6+D3dyGjh57iR+mAXrJQ ug+kvL0gE9f2EQkdfHQ3EraDK+1hMFDIu876HmcSO4OgereTzWfq7TwgA6ifOPRF FJZLqTO0a44iq9Mx8KoEPZLXKs5yUNtcEaZoZ/sSowC5Ep5mw22vguAjNDzyMDjl /kkOgQbzFiIeb9qGRj+kErDTOo0huxPhIeoWSz79fCTlbEYfD2Toj15Ov8OZfIsp DEWCRj0yTnf6aXUAXHgK2hdbRoWVcOhdg2XIENPZ/oapu5O0AosNbNh+VaKgvjY1 6mO+dj/ebCc/FTpMShUXfi8xHmRDtY4zwS98KzJhXiETOH8AUnR3keyDniUoB7eX Siq8Mwt+7RElvPy7OPHbVbXmEp6CRPGJet/0zGAfXc2XBaVrJeA= =oEmX -----END PGP SIGNATURE-----