[Pkg-postgresql-public] postgresql-9.1/wheezy

Christoph Berg myon at debian.org
Fri Feb 6 16:57:31 UTC 2015


Re: Luciano Bello 2015-02-06 <4899643.pGm4t6D6nA at box>
> On Thursday 05 February 2015 16.51.09 Christoph Berg wrote:
> > I've just uploaded postgresql-9.1 9.1.15-0+deb7u1 to security-master.
> 
> DSA released, thanks.

Thanks!

> For the stable distribution (wheezy), these problems have been fixed
> in version 9.1.15-0+deb7u1.
>
> For the upcoming stable distribution (jessie), these problems have
> been fixed in version 9.1.14-0+deb8u1.
>
> For the unstable distribution (sid), these problems have been fixed in
> version 9.1.15-0+deb8u1.

I should have provided more context here. The reality is a bit more
complicated:

jessie/sid do contain the postgresql-9.1 source package, but that only
provides a single binary package (postgresql-plperl-9.1) to enable
upgrades (libperl soname change). 9.1.15-0+deb8u1 was uploaded to sid,
but as the plperl part of PostgreSQL is not affected by this security
update, it's not entirely correct to say this version would fix any of
these problems. This .15 upload will also replace the old .14 version
cited above in jessie.

The same set of problems exist in postgresql-9.4, and 9.4.1-1 was
uploaded yesterday as well.

So the version overview in the DSA should have been:

> For the stable distribution (wheezy), these problems have been fixed
> in version 9.1.15-0+deb7u1.
>
> For the unstable distribution (sid), these problems have been fixed in
> the postgresql-9.4 package, version 9.4.1-1. This version will also
> be part of the upcoming stable distribution (jessie).

I'm just mentioning this for completeness here in case anyone is
wondering. It was entirely my fault for not mentioning that in my
original mail, sorry... (Next item on the TODO list: put that
explanation in the jessie release notes as well...)

Christoph
-- 
cb at df7cb.de | http://www.df7cb.de/



More information about the Pkg-postgresql-public mailing list