Update release notes.
authorTom Lane <[email protected]>
Thu, 27 Jan 2011 22:45:51 +0000 (17:45 -0500)
committerTom Lane <[email protected]>
Thu, 27 Jan 2011 22:47:27 +0000 (17:47 -0500)
Security: CVE-2010-4015

doc/src/sgml/release-8.2.sgml
doc/src/sgml/release-8.3.sgml

index dd82ee69d3a43386b37df9f000e475dba88bee16..2dd49d6a063e9bbdb68c74f4033e88d14b09c578 100644 (file)
      </para>
     </listitem>
 
+    <listitem>
+     <para>
+      Fix buffer overrun in <filename>contrib/intarray</>'s input function
+      for the <type>query_int</> type (Apple)
+     </para>
+
+     <para>
+      This bug is a security risk since the function's return address could
+      be overwritten.  Thanks to Apple Inc's security team for reporting this
+      issue and supplying the fix.  (CVE-2010-4015)
+     </para>
+    </listitem>
+
     <listitem>
      <para>
       Fix bug in <filename>contrib/seg</>'s GiST picksplit algorithm
index 5d691a4183f251797357a9d798ff0b88d04467e6..c0595ab5df0820d77595eca7c9a83cd2d73a5394 100644 (file)
      </para>
     </listitem>
 
+    <listitem>
+     <para>
+      Fix buffer overrun in <filename>contrib/intarray</>'s input function
+      for the <type>query_int</> type (Apple)
+     </para>
+
+     <para>
+      This bug is a security risk since the function's return address could
+      be overwritten.  Thanks to Apple Inc's security team for reporting this
+      issue and supplying the fix.  (CVE-2010-4015)
+     </para>
+    </listitem>
+
     <listitem>
      <para>
       Fix bug in <filename>contrib/seg</>'s GiST picksplit algorithm