<feed xmlns='http://www.w3.org/2005/Atom'>
<title>ports/databases/postgresql74-server/Makefile, branch pre-xorg-7</title>
<subtitle>FreeBSD ports tree</subtitle>
<id>https://cgit-dev.freebsd.org/ports/atom?h=pre-xorg-7</id>
<link rel='self' href='https://cgit-dev.freebsd.org/ports/atom?h=pre-xorg-7'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/'/>
<updated>2007-04-23T16:10:54Z</updated>
<entry>
<title>Update PostgreSQL to 7.3.19, 7.4.17, 8.0.13, 8.1.9 and 8.2.4 respectively:</title>
<updated>2007-04-23T16:10:54Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2007-04-23T16:10:54Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=0460921154a83d30802fb47542396c669821a8c0'/>
<id>urn:sha1:0460921154a83d30802fb47542396c669821a8c0</id>
<content type='text'>
 The PostgreSQL Global Development Group has released updated versions
 for PostgreSQL 8.2 and all back versions to patch a privilege
 escalation exploit in SECURITY DEFINER functions.  All users of this
 feature are urged to update to the latest minor version and follow
 instructions on securing these functions as soon as possible.  This
 minor release also contains other fixes, so all users should plan to
 deploy it.

 Once you have updated, additional steps are required to secure your
 database against the exploit.  Please read the release notes at
 http://www.postgresql.org/docs/8.2/static/release.html and the
 TechDocs article at http://www.postgresql.org/docs/techdocs.77 on how
 to lock down your security definer functions, if you use them.

 As always, application of a minor release does not require a dump and
 reload of the database.

 The frequency of security fixes recently is a result of increased
 scrutiny of the PostgreSQL code by government agencies and
 security-conscious companies.  Rapid turnaround on security patches
 is key to keeping PostgreSQL the most secure SQL database.  Your work
 and vigilance in applying the latest security updates ensures that
 there will never be a PostgreSQL "worm".

http://www.postgresql.org/docs/8.2/static/release-8-2-4.html
http://www.postgresql.org/docs/8.1/static/release.html#RELEASE-8-1-9
http://www.postgresql.org/docs/8.0/static/release.html#RELEASE-8-0-13
http://www.postgresql.org/docs/7.4/static/release.html#RELEASE-7-4-17

http://www.postgresql.org/docs/techdocs.77

Security: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2138
</content>
</entry>
<entry>
<title>Update PostgreSQL with, amongst other things, a security fix:</title>
<updated>2007-02-05T15:41:15Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2007-02-05T15:41:15Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=9359b28ef731aeae31f4e22cbdac0d19b5af00cd'/>
<id>urn:sha1:9359b28ef731aeae31f4e22cbdac0d19b5af00cd</id>
<content type='text'>
  A vulnerability allows suppressing the normal checks that a SQL
  function returns the data type it's declared to do. These errors can
  easily be exploited to cause a backend crash, and in principle might
  be used to read database content that the user should not be able to
  access. [CVE-2007-0555]

The release includes a set of other fixes as well. Please see the
release information at
http://www.postgresql.org/docs/7.4/static/release.html#RELEASE-7-4-16

Security: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0555
</content>
</entry>
<entry>
<title>Add missing pg_id and bump PORTREVISION.</title>
<updated>2007-01-15T14:42:09Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2007-01-15T14:42:09Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=38169870a0f0a5f0ceadb367f4157725e9b6acd4'/>
<id>urn:sha1:38169870a0f0a5f0ceadb367f4157725e9b6acd4</id>
<content type='text'>
Reported by: Stefan Foulis
</content>
</entry>
<entry>
<title>Update postgresql to 8.2.1, 8.1.6, 8.0.10, 7.4.15 and 7.3.17.</title>
<updated>2007-01-09T16:29:35Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2007-01-09T16:29:35Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=6b11e898761ec7ced9bf9b652a24b78697eac863'/>
<id>urn:sha1:6b11e898761ec7ced9bf9b652a24b78697eac863</id>
<content type='text'>
Release notes:
http://www.postgresql.org/docs/7.3/static/release.html#RELEASE-7-3-17
http://www.postgresql.org/docs/7.4/static/release.html#RELEASE-7-4-15
http://www.postgresql.org/docs/8.0/static/release.html#RELEASE-8-0-10
http://www.postgresql.org/docs/8.1/static/release.html#RELEASE-8-1-6
http://www.postgresql.org/docs/8.2/static/release-8-2-1.html

The server-side utilities of postgresql (initdb, initlocation,
ipcclean, pg_controldata, pg_ctl, pg_id and pg_resetxlog) are now
installed by the respective postgresql*-server port (previously they
where installed with the client). If you update the client, you should
also update the server to make sure you are not left without the
server-side tools. Do something like:

    portupgrade postgresql-client postgresql-server
</content>
</entry>
<entry>
<title>Update PostgreSQL to latest versions: 8.1.5, 8.0.9, 7.4.14 and 7.3.16.</title>
<updated>2006-11-08T17:07:53Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2006-11-08T17:07:53Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=f79096291aa00709815122d1e2c870e650b30f17'/>
<id>urn:sha1:f79096291aa00709815122d1e2c870e650b30f17</id>
<content type='text'>
Release notes:
8.1.5  http://www.postgresql.org/docs/8.1/static/release.html#RELEASE-8-1-5
8.0.9  http://www.postgresql.org/docs/8.0/static/release.html#RELEASE-8-0-9
7.4.14 http://www.postgresql.org/docs/7.4/static/release.html#RELEASE-7-4-14
7.3.16 http://www.postgresql.org/docs/7.3/static/release.html#RELEASE-7-3-16

Change name of the rc script from '010.pgsql.sh' to 'postgresql'

Add optional hierachy patch added for 7.4 and 8.1 ports.

Chase heimdal libs update [reported by several]

For 8.1+ the port enables autovacuum in ~pgsql/postgresql.conf when
running initdb

Cleanup the ports, moving pkg-message-* to files/pkg-message-*.in and
files/pgsql.sh.tmpl to files/postgresql.in. [ports/97767]

PR: ports/97767, submitted by delphij@FreeBSD.org
</content>
</entry>
<entry>
<title>There is no point in setting mode of rc.d file to be 554, set it to 555.</title>
<updated>2006-06-26T22:24:10Z</updated>
<author>
<name>Maxim Sobolev</name>
<email>sobomax@FreeBSD.org</email>
</author>
<published>2006-06-26T22:24:10Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=f782d82915d6c290d0933d7758144bf91974aa46'/>
<id>urn:sha1:f782d82915d6c290d0933d7758144bf91974aa46</id>
<content type='text'>
Otherwise there could be problems with the service not starting up in the
case when owner of the file has been changed.
</content>
</entry>
<entry>
<title>Update all PostgreSQL to fix a security flaw</title>
<updated>2006-05-23T21:18:58Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2006-05-23T21:18:58Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=85e4e498063b6ec1ad7101e6c6a0b60e3104c2a6'/>
<id>urn:sha1:85e4e498063b6ec1ad7101e6c6a0b60e3104c2a6</id>
<content type='text'>
The PostgreSQL Global Development Group today released versions 8.1.4, 8.0.8,
7.4.13 and 7.3.15. This is an urgent update to close a security hole which
can permit a SQL injection attack on some applications running PostgreSQL.

Users are urged to apply the update as soon as reasonably possible. Since the
update affects client functionality, most driver projects will be updating
this week as well.

Because the security issue involved is complex, we have added a section in
Techdocs to explain it: http://www.postgresql.org/docs/techdocs.52. Please
read this first before applying the updates.

Also, fix rc_subr startup problems on FreeBSD-7.x.

Security:	http://www.postgresql.org/docs/techdocs.50
PR:		ports/95154
</content>
</entry>
<entry>
<title>Security patch, update to version 7.4.12.</title>
<updated>2006-02-18T15:45:58Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2006-02-18T15:45:58Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=ab5d98d05bc05d7b7d1903cad47072a22e341135'/>
<id>urn:sha1:ab5d98d05bc05d7b7d1903cad47072a22e341135</id>
<content type='text'>
Security:	http://www.postgresql.org/docs/8.1/static/release-7-4-12.html
</content>
</entry>
<entry>
<title>Update postgresql with latest patch release.</title>
<updated>2006-01-09T17:30:38Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2006-01-09T17:30:38Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=1d992c44d756ba5dc5945dae476f59cf8c1d458f'/>
<id>urn:sha1:1d992c44d756ba5dc5945dae476f59cf8c1d458f</id>
<content type='text'>
A critical fix repairs an error in ReadBuffer that can cause data loss
due to overwriting recently-added pages.  This applies to the 8.1 and
8.0 branches on all platforms.

Note that this update might require a reindex of textual columns under
certain conditions; please see UPDATING.

Other fixes included are:
-- Character string locale comparison bug. This may require a REINDEX
    on text column indexes in some locales, such as Hungarian.
-- Prevent accidental changes of locale by plperl
-- Two fixes for Japanese encodings
-- Two fixes for COPY CSV
-- Fixes for functions returning RECORD
-- Fixes to autovacuum, dblink and pgcrypto
</content>
</entry>
<entry>
<title>Handle a change in rc.subr. nowadays, "faststart" is used instead of</title>
<updated>2005-12-25T20:06:23Z</updated>
<author>
<name>Palle Girgensohn</name>
<email>girgen@FreeBSD.org</email>
</author>
<published>2005-12-25T20:06:23Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/ports/commit/?id=d6b6d443889e9a8ab8920e85ecfca5979d47e9c9'/>
<id>urn:sha1:d6b6d443889e9a8ab8920e85ecfca5979d47e9c9</id>
<content type='text'>
"start" when booting, since there's no need waste time checking for
running processes when the OS is starting up.

Bumping portrevision.

PR:		90884
Submitted by:	Victor Snezhko &lt;snezhko@indorsoft.ru&gt;
</content>
</entry>
</feed>
