SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 
Changelog for postgresql-jdbc-42.7.2-47.8.noarch.rpm :

* Thu Feb 29 2024 Fridrich Strba - Upgrade to upstream version 42.7.2
* Security fix: + CVE-2024-1597 (bsc#1220644) postgresql vulnerable to SQL Injection via line comment generation
* Other changes: + perf: avoid autoboxing bind indexes + add: Add PasswordUtil for encrypting passwords client side + refactor: document that encodePassword will zero out the password array, and remove driver\'s default encodePassword + change: Use simple query for isValid. Using Extended query sends two messages- Removed patches:
* CVE-2022-26520.patch
* fix-SQL-Injection-CVE-2022-31197.patch
* fix-createTempFile-vulnerability-CVE-2022-41946.patch + issues fixed by upstream before this version
* Wed Feb 21 2024 Gus Kenion - Use %patch -P N instead of deprecated %patchN.
* Sun Jan 08 2023 Michael Calmer - fix createTempFile vulnerability - CVE-2022-41946 (bsc#1206921)
* Added: fix-createTempFile-vulnerability-CVE-2022-41946.patch
* Tue Sep 27 2022 Michael Calmer - Address SQL Injection Vulnerability CVE-2022-31197 (bsc#1202170)
* Add: fix-SQL-Injection-CVE-2022-31197.patch
* Fri Jun 03 2022 Michael Calmer - Address arbitrary File Write Vulnerability CVE-2022-26520 (bsc#1197356)
* Add: CVE-2022-26520.patch
* Thu Mar 03 2022 Michael Calmer - Upgrade to upstream version 42.2.25
* uses SASLprep normalization for SCRAM authentication fixing some issues with spaces in passwords. (bsc#1196693) (jsc#SLE-23993, jsc#SLE-23994)
* https://jdbc.postgresql.org/documentation/changelog.html
* Fri Aug 28 2020 Fridrich Strba - Upgrade to upstream version 42.2.16
* building with maven- Removed patch:
* jdbc-postgresql-9.4_p1201-remove-sspi.patch - not needed any more
* Tue Sep 19 2017 fstrbaAATTsuse.com- Build with java compatibility 1.6- Modified file:
* build.xml + Detect correctly java 9
* Mon Jul 06 2015 dmacvicarAATTsuse.de- update to version 9.4-1200 (fate#318788)
* https://jdbc.postgresql.org/documentation/changelog.html- Add patch:
* jdbc-postgresql-9.4_p1201-remove-sspi.patch
* Fri Jul 11 2014 tchvatalAATTsuse.com- Do not version java docdir.
 
ICM