From patchwork Mon Feb 12 12:12:16 2018 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Adam Duskett X-Patchwork-Id: 872014 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=busybox.net (client-ip=140.211.166.136; helo=silver.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.b="kNAvWy8Q"; dkim-atps=neutral Received: from silver.osuosl.org (smtp3.osuosl.org [140.211.166.136]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3zg4LS4tP0z9t34 for ; Mon, 12 Feb 2018 23:12:48 +1100 (AEDT) Received: from localhost (localhost [127.0.0.1]) by silver.osuosl.org (Postfix) with ESMTP id 775A82EBDF; Mon, 12 Feb 2018 12:12:44 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from silver.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EwQiTsPLwa7B; Mon, 12 Feb 2018 12:12:42 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by silver.osuosl.org (Postfix) with ESMTP id 468E12CCE6; Mon, 12 Feb 2018 12:12:42 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from fraxinus.osuosl.org (smtp4.osuosl.org [140.211.166.137]) by ash.osuosl.org (Postfix) with ESMTP id 17AE51C0057 for ; Mon, 12 Feb 2018 12:12:41 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by fraxinus.osuosl.org (Postfix) with ESMTP id 13A1786C65 for ; Mon, 12 Feb 2018 12:12:41 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from fraxinus.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GzlndMam7WlP for ; Mon, 12 Feb 2018 12:12:40 +0000 (UTC) X-Greylist: domain auto-whitelisted by SQLgrey-1.7.6 Received: from mail-io0-f196.google.com (mail-io0-f196.google.com [209.85.223.196]) by fraxinus.osuosl.org (Postfix) with ESMTPS id 3B61A86B6A for ; Mon, 12 Feb 2018 12:12:40 +0000 (UTC) Received: by mail-io0-f196.google.com with SMTP id 72so17004094iom.10 for ; Mon, 12 Feb 2018 04:12:40 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:cc:subject:date:message-id; bh=N2jdEOr6nEUTEY+TADBGvFOTJa3PaHneD4lWralXoZc=; b=kNAvWy8Q5nBLK6s+sJ/Yq2lon7JKjOZ/olZuMgfEHmTpI6m0CAOCaG6ic5vbwDBPI2 ynjAnG9DiJQrSovKkc10Lzq/RzaL6GvlytvyeqLeDq0tMsX+pKv+pqPT9Zb9LAgloGpD GmxonCnaclCf1ViXCIY9mc0GB28P3P4+N7waoGfOMYzzDNrXhdt97xLLzN9rDsz3llmi OVjW5ug5wY5FNoZILnPrGEA26i+St11hgOBasPhCT6OCQ0m748ts02KcybeSUUDdwF6U 9WZrwIM0b6d75hv8lsoYuy9rPC+MCZDxcp8XRZt5oFTzr7wSFftYLmL2THwvtTJzd89g hHDA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id; bh=N2jdEOr6nEUTEY+TADBGvFOTJa3PaHneD4lWralXoZc=; b=lkvMeWeBPYuyS2uBHe7n2vOryDW9XaQ9Akgv8/9BmnqoviJ3repgy6rkFJlvWh/xNP BD8bYy1jeQk8/U2QNGIhaaEclwX31ywjeQOdOX/IbD5vsSszIcUhRkH0qTWvXQYpEUwl xbGpEvzO42y/blIZJOItbqRlXU+mA0+pLuKg/OJqf13eE3PrQHfw3LUvf8bRbLkQ1i/Q WCfYiM92c370tr4tnJPDF6g1WrmcQib7dokSKj//82RN2zHb0V8VuEg+hxTGXjQaRgKh /VSjhcUVX4wQrT26s0Ro6+eQI11fF6QuLXcJHOOD4228WKzpJGROg+cSyH2RtpON42ly fJWQ== X-Gm-Message-State: APf1xPDou+eJIhP6AVQh7fJ+8rLWsMOURX7t1hIaHY0bU48juptB1vFS a7DDab+AyJsyn25Mbb013u9Ekav0 X-Google-Smtp-Source: AH8x226VvdZnYg4u1wWgAYA/k5ZdP5ift2IjvAXizVNcu1jx4F2GxQZzzgarUq6kWSi+9G5jTLrICw== X-Received: by 10.107.133.75 with SMTP id h72mr12750629iod.227.1518437559231; Mon, 12 Feb 2018 04:12:39 -0800 (PST) Received: from localhost.localdomain (mail.codeblue.com. [65.183.183.198]) by smtp.gmail.com with ESMTPSA id 62sm3472785iow.35.2018.02.12.04.12.38 (version=TLS1_2 cipher=ECDHE-RSA-CHACHA20-POLY1305 bits=256/256); Mon, 12 Feb 2018 04:12:38 -0800 (PST) From: Adam Duskett To: buildroot@buildroot.org Date: Mon, 12 Feb 2018 07:12:16 -0500 Message-Id: <20180212121216.23280-1-aduskett@gmail.com> X-Mailer: git-send-email 2.14.3 Subject: [Buildroot] [PATCH v2 2017.02.x 1/1] postgresql: security bump to 9.6.7 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.24 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Adam Duskett MIME-Version: 1.0 Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" from https://www.postgresql.org/about/news/1829/ Fixes: [1] CVE-2018-1052: Fix the processing of partition keys containing multiple expressions [2] CVE-2018-1053: Ensure that all temporary files made with "pg_upgrade" are non-world-readable Signed-off-by: Adam Duskett --- Changes V1 -> v2: - Fixed license file sha256sum - Fixed subject-prefix (Thomas) package/postgresql/postgresql.hash | 6 +++--- package/postgresql/postgresql.mk | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package/postgresql/postgresql.hash b/package/postgresql/postgresql.hash index e62838911e..092e852d10 100644 --- a/package/postgresql/postgresql.hash +++ b/package/postgresql/postgresql.hash @@ -1,4 +1,4 @@ -# From https://ftp.postgresql.org/pub/source/v9.6.6/postgresql-9.6.6.tar.bz2.sha256 -sha256 399cdffcb872f785ba67e25d275463d74521566318cfef8fe219050d063c8154 postgresql-9.6.6.tar.bz2 +# From https://ftp.postgresql.org/pub/source/v9.6.7/postgresql-9.6.7.tar.bz2.sha256 +sha256 2ebe3df3c1d1eab78023bdc3ffa55a154aa84300416b075ef996598d78a624c6 postgresql-9.6.7.tar.bz2 # License file, Locally calculated -sha256 7dc8de32741ad1b03e21710771b55a1b9d460671d47f28a8840f917e38c66676 COPYRIGHT +sha256 24cfc70cf16b3a23242c49ffce39510683bdd48cbedb8a46fe03976ee5f5c21e COPYRIGHT diff --git a/package/postgresql/postgresql.mk b/package/postgresql/postgresql.mk index 50ce212c1c..86f79c05ee 100644 --- a/package/postgresql/postgresql.mk +++ b/package/postgresql/postgresql.mk @@ -4,7 +4,7 @@ # ################################################################################ -POSTGRESQL_VERSION = 9.6.6 +POSTGRESQL_VERSION = 9.6.7 POSTGRESQL_SOURCE = postgresql-$(POSTGRESQL_VERSION).tar.bz2 POSTGRESQL_SITE = http://ftp.postgresql.org/pub/source/v$(POSTGRESQL_VERSION) POSTGRESQL_LICENSE = PostgreSQL