--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2018-5d1f7bd2d7
2018-08-14 21:06:35.950289
--------------------------------------------------------------------------------
Name : postgresql
Product : Fedora 28
Version : 10.5
Release : 1.fc28
URL :
http://www.postgresql.org/
Summary : PostgreSQL client programs
Description :
PostgreSQL is an advanced Object-Relational database management system (DBMS).
The base postgresql package contains the client programs that you'll need to
access a PostgreSQL DBMS server, as well as HTML documentation for the whole
system. These client programs can be located on the same machine as the
PostgreSQL server, or on a remote machine that accesses a PostgreSQL server
over a network connection. The PostgreSQL server can be found in the
postgresql-server sub-package.
--------------------------------------------------------------------------------
Update Information:
update to 10.5, CVE-2018-10915, CVE-2018-10925
--------------------------------------------------------------------------------
ChangeLog:
* Wed Aug 8 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.5-1
- update to 10.5 per release notes:
https://www.postgresql.org/docs/10/static/release-10-5.html
* Thu Aug 2 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.4-8
- new postgresql-setup, the %postgresql_tests* macros now start
the build-time server on random port number
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 10.4-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Thu Jul 12 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.4-6
- drop ppc64 patch, gcc is already fixed (rhbz#1544349)
- move pg_config*.mo files into devel subpackage
* Mon Jul 9 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.4-5
- re-enable -O3 for 64bit PPC boxes
- explicitly set PYTHON=python2, /bin/python doesn't exist fc29+
* Tue Jul 3 2018 Petr Pisar <ppisar(a)redhat.com> - 10.4-4
- Perl 5.28 rebuild
* Wed Jun 27 2018 Jitka Plesnikova <jplesnik(a)redhat.com> - 10.4-3
- Perl 5.28 rebuild
* Tue Jun 19 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 10.4-2
- Rebuilt for Python 3.7
* Wed May 9 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.4-1
- update to 10.4 per release notes:
https://www.postgresql.org/docs/10/static/release-10-4.html
* Thu Apr 26 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.3-5
- pltcl: drop tcl-pltcl dependency (rhbz#1571181)
* Thu Apr 19 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.3-4
- upgrade: package plpython*.so modules
* Mon Apr 16 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.3-3
- upgrade: package plperl.so and pltcl.so
- upgrade: package contrib modules
- upgrade: drop dynamic libraries
* Fri Apr 13 2018 Pavel Raiskup <praiskup(a)redhat.com> - 10.3-2
- define %precise_version helper macro
- drop explicit libpq.so provide from *-libs
- update postgresql-setup tarball
- add postgresql-test-rpm-macros package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1614404 - CVE-2018-10915 postgresql: Certain host connection parameters
defeat client-side security defenses [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1614404
[ 2 ] Bug #1614402 - CVE-2018-10925 postgresql: Missing authorization and memory
disclosure in INSERT ... ON CONFLICT DO UPDATE statements [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1614402
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2018-5d1f7bd2d7' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------