fa0b1388aa
- Fix build on aarch64 with upstream commit 0dceba2: * llvm-21-aarch64.patch
Dominique Leuenberger2025-12-18 09:16:01 +00:00
0ee7862009
Accepting request 1320377 from server:database:postgresql
Ana Guerrero2025-11-28 15:52:49 +00:00
5ab08be7f8
- Fix build with uring for post SLE15 code streams.
Reinhard Max2025-11-24 16:49:52 +00:00
928e997b1a
- Use %product_libs_llvm_ver to determine the LLVM version. - Remove conditionals for obsolete PostgreSQL releases.
Reinhard Max2025-11-14 17:14:34 +00:00
f400de5d20
- Upgrade to 14.20: * https://www.postgresql.org/docs/release/14.20/ * bsc#1253332, CVE-2025-12817: Missing check for CREATE privileges on the schema in CREATE STATISTICS allowed table owners to create statistics in any schema, potentially leading to unexpected naming conflicts. * bsc#1253333, CVE-2025-12818: Several places in libpq were not sufficiently careful about computing the required size of a memory allocation. Sufficiently large inputs could cause integer overflow, resulting in an undersized buffer, which would then lead to writing past the end of the buffer.
Reinhard Max2025-11-13 14:34:51 +00:00
e35085dbdd
Accepting request 1307158 from server:database:postgresql
Ana Guerrero2025-09-25 16:46:06 +00:00
9b97a7785f
Accepting request 1247460 from server:database:postgresql
Ana Guerrero2025-02-20 18:46:46 +00:00
986d9d08ef
- Upgrade to 14.17: * Improve behavior of libpq's quoting functions: The changes made for CVE-2025-1094 had one serious oversight: PQescapeLiteral() and PQescapeIdentifier() failed to honor their string length parameter, instead always reading to the input string's trailing null. This resulted in including unwanted text in the output, if the caller intended to truncate the string via the length parameter. With very bad luck it could cause a crash due to reading off the end of memory. In addition, modify all these quoting functions so that when invalid encoding is detected, an invalid sequence is substituted for just the first byte of the presumed character, not all of it. This reduces the risk of problems if a calling application performs additional processing on the quoted string. * Fix small memory leak in pg_createsubscriber. * https://www.postgresql.org/docs/release/14.17/ * https://www.postgresql.org/about/news/p-3018/Reinhard Max2025-02-20 16:33:34 +00:00
200ccb2169
Accepting request 1245713 from server:database:postgresql
Ana Guerrero2025-02-13 17:40:28 +00:00
351ea6989c
Accepting request 1225751 from server:database:postgresql
Ana Guerrero2024-11-22 22:51:54 +00:00
9d98757c2b
- Upgrade to 14.15: * Repair ABI break for extensions that work with struct ResultRelInfo. * Restore functionality of ALTER {ROLE|DATABASE} SET role * Fix cases where a logical replication slot's restart_lsn could go backwards. * Avoid deleting still-needed WAL files during pg_rewind. * Count index scans in contrib/bloom indexes in the statistics views, such as the pg_stat_user_indexes.idx_scan counter. * Fix crash when checking to see if an index's opclass options have changed. * Avoid assertion failure caused by disconnected NFA sub-graphs in regular expression parsing. * https://www.postgresql.org/about/news/p-2965/ * https://www.postgresql.org/docs/release/14.15/Reinhard Max2024-11-21 17:45:28 +00:00
b212f7c418
Accepting request 1224294 from server:database:postgresql
Ana Guerrero2024-11-15 14:43:19 +00:00
18342ee243
- Upgrade to 14.14: * CVE-2024-10976, bsc#1233323: Ensure cached plans are marked as dependent on the calling role when RLS applies to a non-top-level table reference. * CVE-2024-10977, bsc#1233325: Make libpq discard error messages received during SSL or GSS protocol negotiation. * CVE-2024-10978, bsc#1233326: Fix unintended interactions between SET SESSION AUTHORIZATION and SET ROLE * CVE-2024-10979, bsc#1233327: Prevent trusted PL/Perl code from changing environment variables. * https://www.postgresql.org/about/news/p-2955/ * https://www.postgresql.org/docs/release/14.14/ * https://www.postgresql.org/about/news/p-2910/Reinhard Max2024-11-14 14:53:58 +00:00
b7706c3e7c
- Pull upstream patch to fix tests with timezone 2024b * postgresql-testsuite-timezone-fix.patch
Reinhard Max2024-11-05 13:57:30 +00:00
afc973174f
- Upgrade to 14.12 (bsc#1224051): * bsc#1224038, CVE-2024-4317: Restrict visibility of pg_stats_ext and pg_stats_ext_exprs entries to the table owner. See the release notes for the steps that have to be taken to fix existing PostgreSQL instances. * Fix incompatibility with LLVM 18. * https://www.postgresql.org/docs/release/14.12/ - Prepare for PostgreSQL 17. - Make sure all compilation and doc generation happens in %build.
Reinhard Max2024-05-09 15:30:26 +00:00
2801a6304c
Accepting request 1171158 from home:aaronpuchert:branches:server:database:postgresql
Reinhard Max2024-05-02 07:15:38 +00:00
05bd1e4890
- Remove constraints file because improved memory usage for s390x
Reinhard Max2024-03-11 09:16:34 +00:00
4c1921e022
Accepting request 1154711 from server:database:postgresql
Ana Guerrero2024-03-04 20:25:53 +00:00
0daab0ee0e
Accepting request 1153289 from home:dimstar:rpm4.20:p
Reinhard Max2024-03-04 14:16:16 +00:00
9888a49a6a
Accepting request 1145270 from server:database:postgresql
Ana Guerrero2024-02-09 22:52:55 +00:00
ec32bc13e8
- Upgrade to 14.11: * bsc#1219679, CVE-2024-0985: Tighten security restrictions within REFRESH MATERIALIZED VIEW CONCURRENTLY. One step of a concurrent refresh command was run under weak security restrictions. If a materialized view's owner could persuade a superuser or other high-privileged user to perform a concurrent refresh on that view, the view's owner could control code executed with the privileges of the user running REFRESH. Fix things so that all user-determined code is run as the view's owner, as expected * If you use GIN indexes, you may need to reindex after updating to this release. * LLVM 18 is now supported. * https://www.postgresql.org/docs/release/14.11/Reinhard Max2024-02-08 15:24:01 +00:00
2e4128064b
Accepting request 1124707 from server:database:postgresql
Ana Guerrero2023-11-09 20:36:15 +00:00
45c336c837
Accepting request 1121434 from server:database:postgresql
Ana Guerrero2023-10-31 19:26:33 +00:00
403cdbef99
- boo#1216734: Revert the last change and make the devel package independend of all other subpackages except for the libs.
Reinhard Max2023-10-31 11:04:13 +00:00
4386e8b344
Accepting request 1120251 from server:database:postgresql
Ana Guerrero2023-10-25 16:04:45 +00:00
274611f106
- boo#1216022: Call install-alternatives from the devel subpackage as well, otherwise the symlink for ecpg might be missing.
Reinhard Max2023-10-10 13:12:37 +00:00
8ca724be4b
- Restore the independence of mini builds from the main build after the -mini name change from April 4, 2023. - Adjust icu handling to prepare for PostgreSQL 16.
Reinhard Max2023-05-26 12:03:04 +00:00
ab032128d6
- Change the unix domain socket location from /var/run to /run.
Reinhard Max2023-05-15 14:53:16 +00:00
26442ff27b
- Overhaul postgresql-README.SUSE and move it from the binary package to the noarch wrapper package.
Reinhard Max2023-05-15 14:21:23 +00:00
a1ab1284eb
- bsc#1210303: Stop using the obsolete internal %_restart_on_update macro and drop support for sysv init to simplify the scriptlets.
Reinhard Max2023-04-18 14:00:47 +00:00
92f6f97f1f
- Add a llvmjit-devel subpackage to pull in the right versions of clang and llvm for building extensions.
Reinhard Max2021-11-30 15:48:50 +00:00
d7acfaaff7
- bsc#1192516: Upgrade to 14.1 * Make the server reject extraneous data after an SSL or GSS encryption handshake (CVE-2021-23214). * Make libpq reject extraneous data after an SSL or GSS encryption handshake (CVE-2021-23222). * https://www.postgresql.org/docs/14/release-14-1.htmlReinhard Max2021-11-11 14:57:48 +00:00
f47ef4b5e7
- boo#1190740: Add constraints file with 8GB memory for s390x as a workaround for a memory issue with LLVM
Reinhard Max2021-10-21 15:49:17 +00:00