[Buildroot] [PATCH] postgresql: security bump to version 9.4.6
Thomas Petazzoni
thomas.petazzoni at free-electrons.com
Tue Feb 16 20:37:47 UTC 2016
Dear Gustavo Zacarias,
On Tue, 16 Feb 2016 13:02:38 -0300, Gustavo Zacarias wrote:
> Fixes:
> CVE-2016-0766 - privilege escalation issue for users of PL/Java.
> CVE-2016-0773 - issue with regular expression (regex) parsing. Prior
> code allowed users to pass in expressions which included out-of-range
> Unicode characters, triggering a backend crash. This issue is critical
> for PostgreSQL systems with untrusted users or which generate regexes
> based on user input.
>
> Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>
> ---
> package/postgresql/postgresql.hash | 4 ++--
> package/postgresql/postgresql.mk | 2 +-
> 2 files changed, 3 insertions(+), 3 deletions(-)
Applied to master, thanks.
Thomas
--
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com
More information about the buildroot
mailing list