Received: from malur.postgresql.org ([217.196.149.56]) by arkaria.postgresql.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1mlAIU-0001oA-5i for pgsql-pkg-debian@arkaria.postgresql.org; Thu, 11 Nov 2021 13:39:22 +0000 Received: from localhost ([127.0.0.1] helo=malur.postgresql.org) by malur.postgresql.org with esmtp (Exim 4.92) (envelope-from ) id 1mlAIT-0000z0-3c for pgsql-pkg-debian@arkaria.postgresql.org; Thu, 11 Nov 2021 13:39:21 +0000 Received: from magus.postgresql.org ([2a02:c0:301:0:ffff::29]) by malur.postgresql.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1mlAIS-0000yr-R6 for pgsql-pkg-debian@lists.postgresql.org; Thu, 11 Nov 2021 13:39:20 +0000 Received: from mahout.postgresql.org ([2001:4800:3e1:1::227]) by magus.postgresql.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1mlAIQ-0001tI-9I for pgsql-pkg-debian@lists.postgresql.org; Thu, 11 Nov 2021 13:39:20 +0000 Received: from atalia.postgresql.org ([2001:4800:3e1:1::231]) by mahout.postgresql.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1mlAIP-0002cZ-3K for pgsql-pkg-debian@lists.postgresql.org; Thu, 11 Nov 2021 13:39:17 +0000 Received: from myon by atalia.postgresql.org with local (Exim 4.92) (envelope-from ) id 1mlAIO-0004Ey-Vl for pgsql-pkg-debian@lists.postgresql.org; Thu, 11 Nov 2021 13:39:16 +0000 From: apt.postgresql.org Repository Update To: PostgreSQL on Debian and Ubuntu Reply-To: PostgreSQL on Debian and Ubuntu Subject: postgresql-10 updated to version 10.19-1.pgdg+1 Message-Id: Date: Thu, 11 Nov 2021 13:39:16 +0000 List-Id: List-Help: List-Subscribe: List-Post: List-Owner: List-Archive: Archived-At: Precedence: bulk The package postgresql-10 was updated on apt.postgresql.org. apt-listchanges: Changelogs --------------------------- postgresql-10 (10.19-1.pgdg+1) sid-pgdg; urgency=medium * Rebuild for sid-pgdg. * Changes applied by generate-pgdg-source: + Moving lib packages to component 10. + Enabling cassert. -- PostgreSQL on Debian and Ubuntu Wed, 29 Sep 2021 10:47:22 +0200 postgresql-10 (10.19-1) unstable; urgency=medium * New upstream release. + Make the server and libpq reject extraneous data after an SSL or GSS encryption handshake (Tom Lane) A man-in-the-middle with the ability to inject data into the TCP connection could stuff some cleartext data into the start of a supposedly encryption-protected database session. This could be abused to send faked SQL commands to the server, although that would only work if the server did not demand any authentication data. (However, a server relying on SSL certificate authentication might well not do so.) (CVE-2021-23214) This could probably be abused to inject faked responses to the client's first few queries, although other details of libpq's behavior make that harder than it sounds. A different line of attack is to exfiltrate the client's password, or other sensitive data that might be sent early in the session. That has been shown to be possible with a server vulnerable to CVE-2021-23214. (CVE-2021-23222) The PostgreSQL Project thanks Jacob Champion for reporting these problems. * configure.in: Remove check for autoconf 2.69. -- Christoph Berg Wed, 29 Sep 2021 10:47:22 +0200 New version 10.19-1.pgdg+1: postgresql-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el, source postgresql-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el, source postgresql-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el, source postgresql-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el, source postgresql-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el, source postgresql-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64, source postgresql-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64, source postgresql-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64, source postgresql-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el, source postgresql-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el, source postgresql-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el, source postgresql-10-dbg | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-10-dbgsym | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-10-dbgsym | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-10-dbgsym | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-client-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-client-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-client-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-client-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-client-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-client-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-client-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-client-10-dbgsym | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-client-10-dbgsym | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-client-10-dbgsym | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-client-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-doc-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-doc-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-doc-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-doc-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-doc-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-doc-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-doc-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-doc-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-doc-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-doc-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-doc-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-plperl-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-plperl-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-plperl-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-plperl-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plperl-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plperl-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-plperl-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-plperl-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-plperl-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-plperl-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-plperl-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-plperl-10-dbgsym | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-plperl-10-dbgsym | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-plperl-10-dbgsym | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-plperl-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plpython-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-plpython-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plpython-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-plpython3-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-plpython3-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-plpython3-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-plpython3-10-dbgsym | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-plpython3-10-dbgsym | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-plpython3-10-dbgsym | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-plpython3-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-pltcl-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-pltcl-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-pltcl-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-pltcl-10-dbgsym | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-pltcl-10-dbgsym | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-pltcl-10-dbgsym | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-pltcl-10-dbgsym | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg+1 | sid-pgdg | amd64, arm64, i386, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg120+1 | bookworm-pgdg | amd64, arm64, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg110+1 | bullseye-pgdg | amd64, arm64, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg100+1 | buster-pgdg | amd64, arm64, i386, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg90+1 | stretch-pgdg | amd64, i386, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg21.10+1 | impish-pgdg | amd64 postgresql-server-dev-10 | 10.19-1.pgdg21.04+1 | hirsute-pgdg | amd64 postgresql-server-dev-10 | 10.18-1.pgdg20.10+1 | groovy-pgdg | amd64 postgresql-server-dev-10 | 10.19-1.pgdg20.04+1 | focal-pgdg | amd64, arm64, ppc64el postgresql-server-dev-10 | 10.19-1.pgdg18.04+1 | bionic-pgdg | amd64, arm64, i386, ppc64el postgresql-server-dev-10 | 10.17-1.pgdg16.04+1 | xenial-pgdg | amd64, i386, ppc64el The public mirrors serving apt.postgresql.org are synced hourly, the updated packages will be available there shortly.