News for package pgbouncer

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 3.0 (quilt)
Source: pgbouncer
Binary: pgbouncer
Architecture: any
Version: 1.5.4-6+deb8u1
Maintainer: Debian PostgreSQL Maintainers <[email protected]>
Uploaders: Bernd Zeimetz <[email protected]>, Christoph Berg <[email protected]>, Peter Eisentraut <[email protected]>
Homepage: http://pgfoundry.org/projects/pgbouncer/
Standards-Version: 3.9.5
Vcs-Browser: http://anonscm.debian.org/gitweb/?p=pkg-postgresql/pgbouncer.git
Vcs-Git: git://anonscm.debian.org/pkg-postgresql/pgbouncer.git
Testsuite: autopkgtest
Build-Depends: cdbs, debhelper (>= 9), libevent-dev (>= 1.3b), asciidoc, autotools-dev, xmlto, python
Package-List:
 pgbouncer deb database optional arch=any
Checksums-Sha1:
 87c3dd7fc70cbbae93ce8865953891f0aabffd2d 339610 pgbouncer_1.5.4.orig.tar.gz
 027daab7b27cfe77f4e9438f34509de67ae46deb 8260 pgbouncer_1.5.4-6+deb8u1.debian.tar.xz
Checksums-Sha256:
 08040482f4c887e14d8c8c46fab838fff640c0f3cf231f86ad7f766b7a292280 339610 pgbouncer_1.5.4.orig.tar.gz
 cd53fcdd632296566aaaf19f56d5ee41d855c38b0e6f3ade92460f51661c4424 8260 pgbouncer_1.5.4-6+deb8u1.debian.tar.xz
Files:
 9ffaf2e6232e18e676651429813732df 339610 pgbouncer_1.5.4.orig.tar.gz
 12868a9e59948cea1d12cb8c64e741dc 8260 pgbouncer_1.5.4-6+deb8u1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=KGlQ
-----END PGP SIGNATURE-----

Changes:
pgbouncer (1.5.4-6+deb8u1) jessie; urgency=medium

  * Fix remote crash - invalid packet order causes lookup of NULL pointer.
    Not exploitable, just DoS. (CVE-2015-4054)
    Cherry-picked from upstream 1.5.5.

 -- Christoph Berg <[email protected]>  Sat, 23 May 2015 22:58:29 +0200