[Buildroot] [PATCH] postgresql: security bump to version 9.4.6

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Tue Feb 16 20:37:47 UTC 2016


Dear Gustavo Zacarias,

On Tue, 16 Feb 2016 13:02:38 -0300, Gustavo Zacarias wrote:
> Fixes:
> CVE-2016-0766 - privilege escalation issue for users of PL/Java.
> CVE-2016-0773 - issue with regular expression (regex) parsing. Prior
> code allowed users to pass in expressions which included out-of-range
> Unicode characters, triggering a backend crash. This issue is critical
> for PostgreSQL systems with untrusted users or which generate regexes
> based on user input.
> 
> Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>
> ---
>  package/postgresql/postgresql.hash | 4 ++--
>  package/postgresql/postgresql.mk   | 2 +-
>  2 files changed, 3 insertions(+), 3 deletions(-)

Applied to master, thanks.

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com


More information about the buildroot mailing list