Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Upcoming PostgreSQL Security Release: April 4, 2013
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
araxon
n00b
n00b


Joined: 25 May 2011
Posts: 48

PostPosted: Tue Apr 02, 2013 12:55 pm    Post subject: Upcoming PostgreSQL Security Release: April 4, 2013 Reply with quote

Hi. I was wondering, if this is being properly addressed in Gentoo:

Upcoming PostgreSQL Security Release: April 4, 2013

In short: there has been some serious security bug(s) found in PostgreSQL Server and the sources are now locked, while the binary distributions prepare their packages to be released on April 4th. Can we expect the solution to be available for Gentoo users too, on April 4th?

Further reading: Magnus Hagander's PostgreSQL blog.
Back to top
View user's profile Send private message
djdunn
l33t
l33t


Joined: 26 Dec 2004
Posts: 775
Location: Arrakis

PostPosted: Tue Apr 02, 2013 3:40 pm    Post subject: Reply with quote

I would assume the maintainers would put it up fairly shorty after release
_________________
A process cannot be understood by stopping it. Understanding must move with the flow of the process, must join it and flow with it.

-The First Law of Mentat
Back to top
View user's profile Send private message
limn
l33t
l33t


Joined: 13 May 2005
Posts: 997

PostPosted: Tue Apr 02, 2013 4:17 pm    Post subject: Reply with quote

You could try contacting the maintainers directly

http://www.gentoo.org/proj/en/metastructure/herds/herds.xml

You might be better off submitting a bug

https://bugs.gentoo.org/

giving them the pertinent information and requesting that they implement the security fix as soon as possible.
djdunn is probably right and they are already aware, but it will not hurt to submit a bug.
Back to top
View user's profile Send private message
baaann
Guru
Guru


Joined: 23 Jan 2006
Posts: 548
Location: uk

PostPosted: Wed Apr 03, 2013 7:50 am    Post subject: Reply with quote

Looks like its in hand

https://plus.google.com/communities/100146718762350759856/stream/7821a50c-248b-47cc-8a71-96cc620d3bd8
Back to top
View user's profile Send private message
araxon
n00b
n00b


Joined: 25 May 2011
Posts: 48

PostPosted: Wed Apr 03, 2013 8:05 am    Post subject: Reply with quote

baaann wrote:
Looks like its in hand

https://plus.google.com/communities/100146718762350759856/stream/7821a50c-248b-47cc-8a71-96cc620d3bd8

That is good to hear. Thank you very much.
Back to top
View user's profile Send private message
destroyedlolo
l33t
l33t


Joined: 17 Jun 2011
Posts: 683
Location: Close to Annecy (France)

PostPosted: Thu Apr 04, 2013 2:01 pm    Post subject: Reply with quote

The new version has just been announced.
Fortunately, the risk is only when someone create its own access to the DB ... which limit the risk for end-user opened applications.
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum