[Buildroot] [PATCH] postgresql: security bump to version 9.6.6
Thomas Petazzoni
thomas.petazzoni at free-electrons.com
Sat Nov 11 22:24:04 UTC 2017
Hello,
On Sat, 11 Nov 2017 11:44:56 +0100, Peter Korsgaard wrote:
> Fixes the following security issues:
>
> CVE-2017-12172: Start scripts permit database administrator to modify
> root-owned files.
>
> CVE-2017-15098: Memory disclosure in JSON functions.
>
> CVE-2017-15099: INSERT ... ON CONFLICT DO UPDATE fails to enforce SELECT
> privileges.
>
> See the announcement for more details:
> https://www.postgresql.org/about/news/1801/
>
> While we're at it, also add a hash for the license file.
>
> Signed-off-by: Peter Korsgaard <peter at korsgaard.com>
> ---
> package/postgresql/postgresql.hash | 6 ++++--
> package/postgresql/postgresql.mk | 2 +-
> 2 files changed, 5 insertions(+), 3 deletions(-)
Applied to master, thanks.
Thomas
--
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com
More information about the buildroot
mailing list