Accepted:
OK: python-pgsql_2.4.0-6ubuntu3.dsc
-> Component: main Section: python
OK: python-pgsql_2.4.0-6ubuntu3.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Sun, 28 May 2006 17:56:08 +0200
Source: python-pgsql
Binary: python-pgsql python2.4-pgsql
Architecture: source
Version: 2.4.0-6ubuntu3
Distribution: dapper
Urgency: low
Maintainer: Ben Burton <[EMAIL PROTECTED]>
Changed-By: Martin Pitt <[EMAIL PROTECTED]>
Description:
python-pgsql - A Python DB-API 2.0 interface to PostgreSQL
python2.4-pgsql - A Python DB-API 2.0 interface to PostgreSQL
Changes:
python-pgsql (2.4.0-6ubuntu3) dapper; urgency=low
.
* libpqmodule.c, libPQquoteString()/libPQquoteBytea():
- Escape quotes in strings as '', not as \', since the latter does not
work any more with some client encodings with the latest PostgreSQL (in
some multi-byte encodings you can exploit \' escaping to inject SQL
code).
- CVE-2006-2314
Files:
5ee429d196a5a525c3669d9a2e8070ef 653 python optional
python-pgsql_2.4.0-6ubuntu3.dsc
e4801c86931955f58b8db906e76a34bd 13979 python optional
python-pgsql_2.4.0-6ubuntu3.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
iD8DBQFEeciGDecnbV4Fd/IRAhNzAJ0XyIerTpPsFumj4LO+I3X0DZOZfACgul3Q
zPplGBbqBCGNB4C5eOWxUrs=
=89OW
-----END PGP SIGNATURE-----
--
dapper-changes mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/dapper-changes