]> rtime.felk.cvut.cz Git - coffee/buildroot.git/commit
postgresql: security bump to version 9.6.6
authorPeter Korsgaard <peter@korsgaard.com>
Sat, 11 Nov 2017 10:44:56 +0000 (11:44 +0100)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Sat, 11 Nov 2017 22:23:55 +0000 (23:23 +0100)
commitb97353f2b50add10971e8477ad0b4cede9244578
tree4f951a4f288e06fd587446146e5da72a366886ed
parent0a0042f6d7a526d4addce81286ca77c0a8ca656f
postgresql: security bump to version 9.6.6

Fixes the following security issues:

CVE-2017-12172: Start scripts permit database administrator to modify
root-owned files.

CVE-2017-15098: Memory disclosure in JSON functions.

CVE-2017-15099: INSERT ... ON CONFLICT DO UPDATE fails to enforce SELECT
privileges.

See the announcement for more details:
https://www.postgresql.org/about/news/1801/

While we're at it, also add a hash for the license file.

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/postgresql/postgresql.hash
package/postgresql/postgresql.mk