<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="6bdf69d7fb74ed93841ee668250b20e3"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="sledp3-postgresql-7053"
    timestamp="1274745723"
    engine="1.0">
  <yum:name>sledp3-postgresql</yum:name>
  <summary lang="en">Security update for postgresql</summary>
  <description lang="en">
This update of postgresql fixes several minor security vulnerabilities:

    * Postgresql does not properly check privileges during certain RESET
      ALL operations, which allows remote authenticated users to remove
      arbitrary parameter settings. (CVE-2010-1975
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1975&gt; )
    * The PL/Tcl implementation in postgresql loads Tcl code from the 
      pltcl_modules table regardless of the table's ownership and
      permissions, which allows remote authenticated users with database
      creation privileges to execute arbitrary Tcl code. (CVE-2010-1170
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1170&gt; )
    * Postgresql does not properly restrict PL/perl procedures, which
      allows remote authenticated users with database creation privileges
      to execute arbitrary Perl code via a crafted script. (CVE-2010-1169
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1169&gt; )
    * An integer overflow in postgresql allows remote authenticated users
      to crash the daemon with a SELECT statement. (CVE-2010-0733
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0733&gt; )

</description>
  <yum:version ver="7053" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="postgresql-devel" epoch="0" ver="8.1.21" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="postgresql-libs" epoch="0" ver="8.1.21" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="postgresql-libs-32bit" epoch="0" ver="8.1.21" rel="0.4.1" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>postgresql-devel</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="8.1.21" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">6bce805beab8e6980b90e55fd834261c9faba7c7</checksum>
      <time file="1274745751" build="1274745723"/>
      <size package="743228" installed="3011726" archive="3080988"/>
      <location xml:base="media://#1" href="suse/x86_64/postgresql-devel-8.1.21-0.4.1.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="postgresql-devel" epoch="0" ver="8.1.21" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="postgresql-devel"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>postgresql-libs</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="8.1.21" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">d75ca3c61af03bb14c52e9211f81ebe5303e49bc</checksum>
      <time file="1274745751" build="1274745723"/>
      <size package="207376" installed="521931" archive="526076"/>
      <location xml:base="media://#1" href="suse/x86_64/postgresql-libs-8.1.21-0.4.1.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="postgresql-libs" epoch="0" ver="8.1.21" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="postgresql-libs"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>postgresql-libs-32bit</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="8.1.21" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">bc18f1d0bcaa847053fb4a69d55f00e4124a3f76</checksum>
      <time file="1274745885" build="1274745860"/>
      <size package="142689" installed="249008" archive="250304"/>
      <location xml:base="media://#1" href="suse/x86_64/postgresql-libs-32bit-8.1.21-0.4.1.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="postgresql-libs-32bit" epoch="0" ver="8.1.21" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="postgresql-libs-32bit"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
