-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 06 Feb 2024 13:37:19 +0100 Source: postgresql-15 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-15 postgresql-15-dbgsym postgresql-client-15 postgresql-client-15-dbgsym postgresql-plperl-15 postgresql-plperl-15-dbgsym postgresql-plpython3-15 postgresql-plpython3-15-dbgsym postgresql-pltcl-15 postgresql-pltcl-15-dbgsym postgresql-server-dev-15 Architecture: s390x Version: 15.6-0+deb12u1 Distribution: bookworm-security Urgency: medium Maintainer: s390x Build Daemon (zandonai) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 15 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-15 - The World's Most Advanced Open Source Relational Database postgresql-client-15 - front-end programs for PostgreSQL 15 postgresql-plperl-15 - PL/Perl procedural language for PostgreSQL 15 postgresql-plpython3-15 - PL/Python 3 procedural language for PostgreSQL 15 postgresql-pltcl-15 - PL/Tcl procedural language for PostgreSQL 15 postgresql-server-dev-15 - development files for PostgreSQL 15 server-side programming Changes: postgresql-15 (15.6-0+deb12u1) bookworm-security; urgency=medium . * New upstream version. . * Tighten security restrictions within REFRESH MATERIALIZED VIEW CONCURRENTLY (Heikki Linnakangas) . One step of a concurrent refresh command was run under weak security restrictions. If a materialized view's owner could persuade a superuser or other high-privileged user to perform a concurrent refresh on that view, the view's owner could control code executed with the privileges of the user running REFRESH. Fix things so that all user-determined code is run as the view's owner, as expected. . The PostgreSQL Project thanks Pedro Gallegos for reporting this problem. (CVE-2024-0985) Checksums-Sha1: 5b16b5cfd7d2783e2b40593b8b0229da952f4f8c 37880 libecpg-compat3-dbgsym_15.6-0+deb12u1_s390x.deb 86257bda15f502732d0600fda8b78314989173b3 20808 libecpg-compat3_15.6-0+deb12u1_s390x.deb 532d634a3eb922c603c171088075d772b164c887 214464 libecpg-dev-dbgsym_15.6-0+deb12u1_s390x.deb 8a08e105512734ab3cba0150c4d8d6620635cc93 278200 libecpg-dev_15.6-0+deb12u1_s390x.deb f4a1ee2bce66dc6f2bba41f5f11b9f59fe10fef9 111948 libecpg6-dbgsym_15.6-0+deb12u1_s390x.deb 34073c01b3585a9fccbd722f212fa2b72e68bf40 56912 libecpg6_15.6-0+deb12u1_s390x.deb b1dac71c3db214334567b6e2e89cedad8a9de435 88356 libpgtypes3-dbgsym_15.6-0+deb12u1_s390x.deb dac77bc2a1c9314fbb1b03f9b7f1de0f69aaf06c 42056 libpgtypes3_15.6-0+deb12u1_s390x.deb 4541108831c9288d9af11e376a4e92f19bc111cc 135984 libpq-dev_15.6-0+deb12u1_s390x.deb 9257747e9b47ab13484112959e5ea1eb24090746 272400 libpq5-dbgsym_15.6-0+deb12u1_s390x.deb 23a71317616c9c37ae9ceaa553a289dc944bb0d2 176508 libpq5_15.6-0+deb12u1_s390x.deb 187f031acbb3296ee8baaf81e986abbc1ef5ea26 15341312 postgresql-15-dbgsym_15.6-0+deb12u1_s390x.deb f8430bf53b65297d1d5e1d4ed2bbaa40bdf4bbd0 15761 postgresql-15_15.6-0+deb12u1_s390x-buildd.buildinfo 8d5e9e4b4fb70e7012320a2d62f75001e418934a 5639248 postgresql-15_15.6-0+deb12u1_s390x.deb d19dddf52fba2eb5f3513c419563e9f0cef3845e 2237436 postgresql-client-15-dbgsym_15.6-0+deb12u1_s390x.deb bbbacbbe46ca5980493daa171f09e1bb00055a36 1635652 postgresql-client-15_15.6-0+deb12u1_s390x.deb 142e17e1d2271cfe8c8fb8f447cbe84a7e2c4872 180484 postgresql-plperl-15-dbgsym_15.6-0+deb12u1_s390x.deb 7e9ab08986c9840bfb98c1e16c77a6e58af382aa 63372 postgresql-plperl-15_15.6-0+deb12u1_s390x.deb 59bf81d11df81f34a6e00658e462398b7ff5c8c0 169876 postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_s390x.deb 148a0549127587225445f0f303a3c59a0d2f3bbf 86360 postgresql-plpython3-15_15.6-0+deb12u1_s390x.deb b1c4dc5d8e4a8d654205a05e4ee63351ecfa8dcb 77572 postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_s390x.deb 2041593863e4a6f4bc96d06111f74453f2d7c54f 38948 postgresql-pltcl-15_15.6-0+deb12u1_s390x.deb 2d18218bd44d198fc87973311550ee36e2346fd5 1132536 postgresql-server-dev-15_15.6-0+deb12u1_s390x.deb Checksums-Sha256: d4921b5b02557e83d5ac6fd450e4ccc5f805af6cd548e4d15d74e7ee1596fdff 37880 libecpg-compat3-dbgsym_15.6-0+deb12u1_s390x.deb dc99f5e513522eb89ca327c57ee8e26446033485bc0b6094a69c2c9156a328c2 20808 libecpg-compat3_15.6-0+deb12u1_s390x.deb 7a26762d1bd06b4f454b58369f3b0115071bfd48a210c153e68b92007d45c4e6 214464 libecpg-dev-dbgsym_15.6-0+deb12u1_s390x.deb 13982dc63d52ce282d9ae609d1d45319adf1b8bb82d5899fb295c68d7670daca 278200 libecpg-dev_15.6-0+deb12u1_s390x.deb 173bd4ddbdb7ecccd5afb2bb667ee3f01735d9f53ded00af9a915084f0963418 111948 libecpg6-dbgsym_15.6-0+deb12u1_s390x.deb 23b9f09eb51da520b94f2bf1dc65753068507a74526ef92108c9bd8f7ea99026 56912 libecpg6_15.6-0+deb12u1_s390x.deb 19d0cef93c2334885ead493a176afd1852d159bf628b3c9c39e65c7a1a9c749f 88356 libpgtypes3-dbgsym_15.6-0+deb12u1_s390x.deb fc9740b7baf7746db9806db1713569694a5136655a171f6105d8d8aedbc56d63 42056 libpgtypes3_15.6-0+deb12u1_s390x.deb ad1e561b8c14de164bf40f35a33f7454d4d97a17aa04a30032ac85f941c865dc 135984 libpq-dev_15.6-0+deb12u1_s390x.deb 2af5d89da0dca8f8520ad03a948d32fe131a2b8e0a0fcff8e0a0059b6cb0bf2c 272400 libpq5-dbgsym_15.6-0+deb12u1_s390x.deb 9393f9245fb9d708fc4fba16f03cdbfe526b162a69463b0289f143bd75389768 176508 libpq5_15.6-0+deb12u1_s390x.deb 4368bc16649c39611a26285f791490c5db9774dbb4f99a744b40c912f5d9b801 15341312 postgresql-15-dbgsym_15.6-0+deb12u1_s390x.deb e75efc72d642bfe2b3bb449e759a9bb20ebc09ae349918433cd43523961b2b5d 15761 postgresql-15_15.6-0+deb12u1_s390x-buildd.buildinfo 7cc8ac382461908ea5c1b4f67140ef206b35431ef3ac90dfd2bbc2e36da11bd1 5639248 postgresql-15_15.6-0+deb12u1_s390x.deb 8e30eb3621b01543fa71e6b12f4e8ac61acead067d15a4a5888cfbfddaf3cccb 2237436 postgresql-client-15-dbgsym_15.6-0+deb12u1_s390x.deb 02a58e23d6cdeb82fa8bc4adfacbb20c7531cce7d5273c863730e9aa84f80c56 1635652 postgresql-client-15_15.6-0+deb12u1_s390x.deb d38043ea3f02707d16887bf30361b5c8b6ac2a2e81c6ef02bc00b0f862f44e24 180484 postgresql-plperl-15-dbgsym_15.6-0+deb12u1_s390x.deb 453a16fc72ef1396795573fa83cb508b61800bbfb742f94106ad33034f2e07ae 63372 postgresql-plperl-15_15.6-0+deb12u1_s390x.deb 6f8ffdea0943082f13b53be5cb68242562d3fd7f8b01a6c820e00b54f709631a 169876 postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_s390x.deb 1ecfeb1df17bc7321c3fb2eddadec087a50522b70d3b1e04f25389f164b5af7b 86360 postgresql-plpython3-15_15.6-0+deb12u1_s390x.deb 8d8af39711675a69d1dfce5dad7c566b837673caf4f04798c5fa67d94d04e1c4 77572 postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_s390x.deb 37091771596c98dc326845ca25d13b849dc7c0a1a1c373ce273c649eebaee221 38948 postgresql-pltcl-15_15.6-0+deb12u1_s390x.deb a060a7335d33a596f2e95b56a11f41cd1c667dd41eb5759003fcc2874b543382 1132536 postgresql-server-dev-15_15.6-0+deb12u1_s390x.deb Files: 58ff9046bb539ba70052a1b94169e14d 37880 debug optional libecpg-compat3-dbgsym_15.6-0+deb12u1_s390x.deb 2c36a46ea691244fe8ea1b8e44b8cab7 20808 libs optional libecpg-compat3_15.6-0+deb12u1_s390x.deb 8a5d11dd24463b23d972ce150f7730a7 214464 debug optional libecpg-dev-dbgsym_15.6-0+deb12u1_s390x.deb 7c8bc7585578711043666f15c779ebcc 278200 libdevel optional libecpg-dev_15.6-0+deb12u1_s390x.deb 7c1c95aff273d2e13e77a66f42de9ed2 111948 debug optional libecpg6-dbgsym_15.6-0+deb12u1_s390x.deb 32fc5c80f6d3babaa770f9b31efda716 56912 libs optional libecpg6_15.6-0+deb12u1_s390x.deb 698c049019cf00babb975d13b6ee1228 88356 debug optional libpgtypes3-dbgsym_15.6-0+deb12u1_s390x.deb a8610841295365bdd3f23bbc975face4 42056 libs optional libpgtypes3_15.6-0+deb12u1_s390x.deb b9f0bf84f5cb9a6c02c7c1993db12fbf 135984 libdevel optional libpq-dev_15.6-0+deb12u1_s390x.deb 1b68f3fc7c2e6d86bab816315376df65 272400 debug optional libpq5-dbgsym_15.6-0+deb12u1_s390x.deb 491917587e7cde3c0ffb86e25dd2408f 176508 libs optional libpq5_15.6-0+deb12u1_s390x.deb f9fc6d653751667e623bab9640bc7533 15341312 debug optional postgresql-15-dbgsym_15.6-0+deb12u1_s390x.deb 70838fa910673b4b115c35f8dc3448cf 15761 database optional postgresql-15_15.6-0+deb12u1_s390x-buildd.buildinfo 35174fa970dab0aefdfbc4819ee9ff89 5639248 database optional postgresql-15_15.6-0+deb12u1_s390x.deb 78206338aa2ca9b9b01ca3f143dd3f9a 2237436 debug optional postgresql-client-15-dbgsym_15.6-0+deb12u1_s390x.deb a5d3732d62f99068760bf20697f2a605 1635652 database optional postgresql-client-15_15.6-0+deb12u1_s390x.deb 15db26667834d4fcd8b5d62c4e8ce6e7 180484 debug optional postgresql-plperl-15-dbgsym_15.6-0+deb12u1_s390x.deb d50325b2dd76b5286e56c9a32fbb7b20 63372 database optional postgresql-plperl-15_15.6-0+deb12u1_s390x.deb 5d1a6a322404b36fbd0f76d81be8e154 169876 debug optional postgresql-plpython3-15-dbgsym_15.6-0+deb12u1_s390x.deb 8f07694c86d8bbc4df0797356e724ee6 86360 database optional postgresql-plpython3-15_15.6-0+deb12u1_s390x.deb 975f841a2b3dbea32e2f194231922e78 77572 debug optional postgresql-pltcl-15-dbgsym_15.6-0+deb12u1_s390x.deb d6ec4aa020ead8306cf3f6e064e85f93 38948 database optional postgresql-pltcl-15_15.6-0+deb12u1_s390x.deb 92e7aed9cb80794414309b997cf01756 1132536 libdevel optional postgresql-server-dev-15_15.6-0+deb12u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEctqRAwcjFMIrbct74euoNlQ3ywQFAmXMuoMACgkQ4euoNlQ3 ywSFYA//YlIKaavVkXM6rYt2Ncp8EGiqjCoV2LOVQQGXMF9AqbmrKYQ3UIhjUnAg OZUMMybCcs/8UXWZ0YBQCSxQw1hHrW88qxDwC2oT1+nH0ptbOpgTT9KrwWP62Vqj Uo2q3pB7/NrjK9+0LVgrWdyH6raGp+L91IMM1I7eBAmo1jP0RGtUHK60Cm3diKIa LRRXp5NiA9GEvq4vfvAAhZJcgH+Lz2oWgIW0dwlmRKKjGwtg7dF3zPKt+eU1uVWr HEdTRy/ONnqLNa7HIn52kU8c8nVrN3JyWNHd1zhWtg1+lbbDB1zOgut3K0FUKkYF baTUqkoIYTnvY9Q5G58fHzqm9Y2pva4uKpJsTZWBhi8r07UWl3uXKfcQZYKjQpsd YCC0kFe3uN7Zi4L5U16ow9qJrGyQJqCAMQKYJsMARG5VZsCl+ppyFkhsOdvf3Bxz xlDd0V/DVrdaSXGCZMRLRq/80h8hlROSwDTpYMtRrj+MLIExqGROBcTQvGRZEEgR 7AMGdxEokVvRwi6LNHGEK8H3ulP6Qb4sBUBgUUJpHFR2cIRRBlNKyQD1Vh/U14OG VR+Q49//jQK6lmnGCl5BGqTWfQtZrVu42rpYcqHwIzMrecZ07VftNPyQS2zs7PtV d0fZjhcZk98TBCBn+OEmC90ufJ/HuY714Y0s/Amm/kQpeBjf1iU= =tGQM -----END PGP SIGNATURE-----