Accepted python-pgsql 2.4.0-6ubuntu3 (source)

Martin Pitt mpitt at debian.org
Sun May 28 17:40:07 BST 2006


Accepted:
 OK: python-pgsql_2.4.0-6ubuntu3.dsc
     -> Component: main Section: python
 OK: python-pgsql_2.4.0-6ubuntu3.diff.gz

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Sun, 28 May 2006 17:56:08 +0200
Source: python-pgsql
Binary: python-pgsql python2.4-pgsql
Architecture: source
Version: 2.4.0-6ubuntu3
Distribution: dapper
Urgency: low
Maintainer: Ben Burton <bab at debian.org>
Changed-By: Martin Pitt <mpitt at debian.org>
Description: 
 python-pgsql - A Python DB-API 2.0 interface to PostgreSQL
 python2.4-pgsql - A Python DB-API 2.0 interface to PostgreSQL
Changes: 
 python-pgsql (2.4.0-6ubuntu3) dapper; urgency=low
 .
   * libpqmodule.c, libPQquoteString()/libPQquoteBytea():
     - Escape quotes in strings as '', not as \', since the latter does not
       work any more with some client encodings with the latest PostgreSQL (in
       some multi-byte encodings you can exploit \' escaping to inject SQL
       code).
     - CVE-2006-2314
Files: 
 5ee429d196a5a525c3669d9a2e8070ef 653 python optional python-pgsql_2.4.0-6ubuntu3.dsc
 e4801c86931955f58b8db906e76a34bd 13979 python optional python-pgsql_2.4.0-6ubuntu3.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)

iD8DBQFEeciGDecnbV4Fd/IRAhNzAJ0XyIerTpPsFumj4LO+I3X0DZOZfACgul3Q
zPplGBbqBCGNB4C5eOWxUrs=
=89OW
-----END PGP SIGNATURE-----





More information about the dapper-changes mailing list