<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="253ee9a4e425a6314b5b7ccef2446041"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1322">
  <id>dbg111-postgresql</id>
  <title>postgresql: security update</title>
  <release>openSUSE 11.1</release>
  <issued date="1253201459"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537706" id="537706" title="bug number 537706" type="bugzilla"/>
  </references>
  <description>Multiple security vulnerabilities have been fixed in
PostgrSQL
- CVE-2009-3229: allows remote authenticated users to cause
  a denial of service
- CVE-2009-3230: allows remote authenticated users to gain
  higher privileges
- CVE-2009-3231: when using LDAP authentication with
  anonymous binds, allows remote attackers to bypass
  authentication via an empty password
</description>
  <pkglist>
    <collection>
        <package name="postgresql-debuginfo" arch="i586" version="8.3.8" release="0.1.1">
          <filename>postgresql-debuginfo-8.3.8-0.1.1.i586.rpm</filename>
        </package>
        <package name="postgresql-debuginfo" arch="ppc" version="8.3.8" release="0.1.1">
          <filename>postgresql-debuginfo-8.3.8-0.1.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-debuginfo" arch="x86_64" version="8.3.8" release="0.1.1">
          <filename>postgresql-debuginfo-8.3.8-0.1.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-debugsource" arch="i586" version="8.3.8" release="0.1.1">
          <filename>postgresql-debugsource-8.3.8-0.1.1.i586.rpm</filename>
        </package>
        <package name="postgresql-debugsource" arch="ppc" version="8.3.8" release="0.1.1">
          <filename>postgresql-debugsource-8.3.8-0.1.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-debugsource" arch="x86_64" version="8.3.8" release="0.1.1">
          <filename>postgresql-debugsource-8.3.8-0.1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
