Accepted python-pgsql 2.4.0-6ubuntu3 (source)
Martin Pitt
mpitt at debian.org
Sun May 28 17:40:07 BST 2006
Accepted:
OK: python-pgsql_2.4.0-6ubuntu3.dsc
-> Component: main Section: python
OK: python-pgsql_2.4.0-6ubuntu3.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Sun, 28 May 2006 17:56:08 +0200
Source: python-pgsql
Binary: python-pgsql python2.4-pgsql
Architecture: source
Version: 2.4.0-6ubuntu3
Distribution: dapper
Urgency: low
Maintainer: Ben Burton <bab at debian.org>
Changed-By: Martin Pitt <mpitt at debian.org>
Description:
python-pgsql - A Python DB-API 2.0 interface to PostgreSQL
python2.4-pgsql - A Python DB-API 2.0 interface to PostgreSQL
Changes:
python-pgsql (2.4.0-6ubuntu3) dapper; urgency=low
.
* libpqmodule.c, libPQquoteString()/libPQquoteBytea():
- Escape quotes in strings as '', not as \', since the latter does not
work any more with some client encodings with the latest PostgreSQL (in
some multi-byte encodings you can exploit \' escaping to inject SQL
code).
- CVE-2006-2314
Files:
5ee429d196a5a525c3669d9a2e8070ef 653 python optional python-pgsql_2.4.0-6ubuntu3.dsc
e4801c86931955f58b8db906e76a34bd 13979 python optional python-pgsql_2.4.0-6ubuntu3.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
iD8DBQFEeciGDecnbV4Fd/IRAhNzAJ0XyIerTpPsFumj4LO+I3X0DZOZfACgul3Q
zPplGBbqBCGNB4C5eOWxUrs=
=89OW
-----END PGP SIGNATURE-----
More information about the dapper-changes
mailing list