Revisions of postgresql11

Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 854084 from Reinhard Max's avatar Reinhard Max (rmax) (revision 12)
- bsc#1178961: %ghost the symlinks to pg_config and ecpg.
- boo#1179765: BuildRequire libpq5 and libecpg6 when not building
  them to avoid dangling symlinks in the devel package.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 848145 from Reinhard Max's avatar Reinhard Max (rmax) (revision 11)
- Upgrade to version 11.10:
  * CVE-2020-25695, bsc#1178666: Block DECLARE CURSOR ... WITH HOLD
    and firing of deferred triggers within index expressions and
    materialized view queries.
  * CVE-2020-25694, bsc#1178667:
    a) Fix usage of complex connection-string parameters in pg_dump,
    pg_restore, clusterdb, reindexdb, and vacuumdb.
    b) When psql's \connect command re-uses connection parameters,
    ensure that all non-overridden parameters from a previous
    connection string are re-used.
  * CVE-2020-25696, bsc#1178668: Prevent psql's \gset command from
    modifying specially-treated variables.
  * Fix recently-added timetz test case so it works when the USA
    is not observing daylight savings time.
    (obsoletes postgresql-timetz.patch)
  * https://www.postgresql.org/about/news/2111/
  * https://www.postgresql.org/docs/11/release-11-10.html
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 845765 from Reinhard Max's avatar Reinhard Max (rmax) (revision 10)
- Fix a DST problem in the test suite: postgresql-timetz.patch
  https://postgr.es/m/16689-57701daa23b377bf@postgresql.org
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 826607 from Reinhard Max's avatar Reinhard Max (rmax) (revision 9)
- update to 11.9:
  * CVE-2020-14349, bsc#1175193: Set a secure search_path in
    logical replication walsenders and apply workers
  * CVE-2020-14350, bsc#1175194: Make contrib modules' installation
    scripts more secure.
  * https://www.postgresql.org/docs/11/release-11-9.html
- Remove postgresql-regress.patch, it does not apply anymore and
  it does not seem to be needed anymore.
- Pack the /usr/lib/postgresql symlink only into the main package.

- Let postgresqlXX conflict with postgresql-noarch < 12.0.1 to get
  a clean and complete cutover to the new packaging schema.

- Move from the "libs" build flavour to a "mini" package that will
  only be used inside the build service and not get shipped, to
  avoid confusion with the debuginfo packages (bsc#1148643).
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 774448 from Marcus Rueckert's avatar Marcus Rueckert (darix) (revision 7)
update for CVE-2020-1720 (forwarded request 774442 from darix)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 766658 from Reinhard Max's avatar Reinhard Max (rmax) (revision 5)
- update to 11.6:
  https://www.postgresql.org/about/news/1994/
  https://www.postgresql.org/docs/11/release-11-6.html

- add requires to the server-devel package for the libs that are
  returned by pg_config --libs

- disable building of the libraries here. Will now be provided from
  the 12.0 package
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 723108 from Reinhard Max's avatar Reinhard Max (rmax) (revision 4)
- Update to 11.5:
  * https://www.postgresql.org/about/news/1960/
  * https://www.postgresql.org/docs/11/release-11-5.html
  * CVE-2019-10208, bsc#1145092: TYPE in pg_temp executes arbitrary
    SQL during SECURITY DEFINER execution.
  * CVE-2019-10209, bsc#1145091: Memory disclosure in cross-type
    comparison for hashed subplan.

- Use FAT LTO objects in order to provide proper static library.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 713375 from Reinhard Max's avatar Reinhard Max (rmax) (revision 3)
- update to 11.4:
  * https://www.postgresql.org/docs/11/release-11-4.html
  * https://www.postgresql.org/about/news/1949/
  * CVE-2019-10164 bsc#1138034: Stack-based buffer overflow via
    setting a password
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 702689 from Reinhard Max's avatar Reinhard Max (rmax) (revision 2)
- Update to 11.3:
  * https://www.postgresql.org/docs/11/release-11-3.html
  * https://www.postgresql.org/about/news/1939/
  * CVE-2019-10130, bsc#1134689: Prevent row-level security
    policies from being bypassed via selectivity estimators.
  * CVE-2019-10129, bsc#1134684: Avoid access to already-freed
    memory during partition routing error reports.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 678944 from Reinhard Max's avatar Reinhard Max (rmax) (revision 1)
Update to 11.2
Displaying revisions 21 - 33 of 33
openSUSE Build Service is sponsored by