Re: Luciano Bello 2015-02-06 <4899643.pGm4t6D6nA@box> > On Thursday 05 February 2015 16.51.09 Christoph Berg wrote: > > I've just uploaded postgresql-9.1 9.1.15-0+deb7u1 to security-master. > > DSA released, thanks.
Thanks! > For the stable distribution (wheezy), these problems have been fixed > in version 9.1.15-0+deb7u1. > > For the upcoming stable distribution (jessie), these problems have > been fixed in version 9.1.14-0+deb8u1. > > For the unstable distribution (sid), these problems have been fixed in > version 9.1.15-0+deb8u1. I should have provided more context here. The reality is a bit more complicated: jessie/sid do contain the postgresql-9.1 source package, but that only provides a single binary package (postgresql-plperl-9.1) to enable upgrades (libperl soname change). 9.1.15-0+deb8u1 was uploaded to sid, but as the plperl part of PostgreSQL is not affected by this security update, it's not entirely correct to say this version would fix any of these problems. This .15 upload will also replace the old .14 version cited above in jessie. The same set of problems exist in postgresql-9.4, and 9.4.1-1 was uploaded yesterday as well. So the version overview in the DSA should have been: > For the stable distribution (wheezy), these problems have been fixed > in version 9.1.15-0+deb7u1. > > For the unstable distribution (sid), these problems have been fixed in > the postgresql-9.4 package, version 9.4.1-1. This version will also > be part of the upcoming stable distribution (jessie). I'm just mentioning this for completeness here in case anyone is wondering. It was entirely my fault for not mentioning that in my original mail, sorry... (Next item on the TODO list: put that explanation in the jessie release notes as well...) Christoph -- [email protected] | http://www.df7cb.de/ _______________________________________________ Pkg-postgresql-public mailing list [email protected] http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-postgresql-public
