Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

postgresql-jdbc-42.7.7-1.1 RPM for noarch

From OpenSuSE Tumbleweed for noarch

Name: postgresql-jdbc Distribution: openSUSE Tumbleweed
Version: 42.7.7 Vendor: openSUSE
Release: 1.1 Build date: Thu Jun 12 11:15:13 2025
Group: Unspecified Build host: reproducible
Size: 1027075 Source RPM: postgresql-jdbc-42.7.7-1.1.src.rpm
Packager: https://bugs.opensuse.org
Url: https://jdbc.postgresql.org/
Summary: JDBC driver for PostgreSQL
PostgreSQL is an advanced Object-Relational database management
system. The postgresql-jdbc package includes the .jar files needed for
Java programs to access a PostgreSQL database.

Provides

Requires

License

BSD-2-Clause

Changelog

* Thu Jun 12 2025 Michael Calmer <mc@suse.com>
  - Upgrade to upstream version 42.7.7
    - security: Client Allows Fallback to Insecure Authentication Despite
      channelBinding=require configuration - CVE-2025-49146 (bsc#1244490)
    - fix: ensure Connection.isValid() returns true even if prepared
      statements deallocate
    - fix: isValid incorrectly called execute, instead of executeWithFlags
    - add the ability to turn off automatic LSN flush
    - Handle protocol 3.2 and wider cancel keys
    - Use query to find the current catalog instead of relying on the
      database in the connection URL or connection properties as this
      could be different if connected through a pooler or proxy
    - fix: ArrayIndexOutOfBounds when write big object into GSS enabled
      connection, make GSSInputStream robust in face of streams that
      produce incomplete reads
    - fix: EOFException on PreparedStatement#toString with unset bytea
      parameter
* Tue Apr 01 2025 Michael Calmer <mc@suse.com>
  - Upgrade to upstream version 42.7.5
    - fix: PgDatabaseMetaData implementation of catalog as param and return value
    - fix: Support default GSS credentials in the Java Postgres client
    - fix: return only the transactions accessible by the current_user in XAResource.recover
    - feat: don’t force send extra_float_digits for PostgreSQL >= 12 fix
    - fix: exclude “include columns” from the list of primary keys
    - perf: Enhance the meta query performance by specifying the oid
    - feat: support getObject(int, byte[].class) for bytea
    - fix: Added way to check for major server version, fixed check for RULE
    - fix: Reuse buffers and reduce allocations in GSSInputStream addresses
    - fix: getSchemas()
    - fix: Update rpm postgresql-jdbc.spec.tpl with scram-client
    - fix: Clearing thisRow and rowBuffer on close() of ResultSet
    - fix: As of version 18 the RULE privilege has been removed
    - fix: use buffered inputstream to create GSSInputStream
    - fix: boolean types not handled in SimpleQuery mode
* Thu Feb 29 2024 Fridrich Strba <fstrba@suse.com>
  - Upgrade to upstream version 42.7.2
    * Security fix:
      + CVE-2024-1597 (bsc#1220644) postgresql vulnerable to SQL
      Injection via line comment generation
    * Other changes:
      + perf: avoid autoboxing bind indexes
      + add: Add PasswordUtil for encrypting passwords client side
      + refactor: document that encodePassword will zero out the
      password array, and remove driver's default encodePassword
      + change: Use simple query for isValid. Using Extended query
      sends two messages
  - Removed patches:
    * CVE-2022-26520.patch
    * fix-SQL-Injection-CVE-2022-31197.patch
    * fix-createTempFile-vulnerability-CVE-2022-41946.patch
      + issues fixed by upstream before this version
* Wed Feb 21 2024 Gus Kenion <gus.kenion@suse.com>
  - Use %patch -P N instead of deprecated %patchN.
* Sun Jan 08 2023 Michael Calmer <mc@suse.com>
  - fix createTempFile vulnerability - CVE-2022-41946 (bsc#1206921)
    * Added: fix-createTempFile-vulnerability-CVE-2022-41946.patch
* Tue Sep 27 2022 Michael Calmer <mc@suse.com>
  - Address SQL Injection Vulnerability CVE-2022-31197
    (bsc#1202170)
    * Add: fix-SQL-Injection-CVE-2022-31197.patch
* Fri Jun 03 2022 Michael Calmer <mc@suse.com>
  - Address arbitrary File Write Vulnerability CVE-2022-26520
    (bsc#1197356)
    * Add: CVE-2022-26520.patch
* Thu Mar 03 2022 Michael Calmer <mc@suse.com>
  - Upgrade to upstream version 42.2.25
    * uses SASLprep normalization for SCRAM authentication fixing
      some issues with spaces in passwords. (bsc#1196693)
      (jsc#SLE-23993, jsc#SLE-23994)
    * https://jdbc.postgresql.org/documentation/changelog.html
* Fri Aug 28 2020 Fridrich Strba <fstrba@suse.com>
  - Upgrade to upstream version 42.2.16
    * building with maven
  - Removed patch:
    * jdbc-postgresql-9.4_p1201-remove-sspi.patch
    - not needed any more
* Tue Sep 19 2017 fstrba@suse.com
  - Build with java compatibility 1.6
  - Modified file:
    * build.xml
      + Detect correctly java 9

Files

/usr/share/doc/packages/postgresql-jdbc
/usr/share/doc/packages/postgresql-jdbc/README.md
/usr/share/java/postgresql-jdbc
/usr/share/java/postgresql-jdbc.jar
/usr/share/java/postgresql-jdbc/postgresql.jar
/usr/share/licenses/postgresql-jdbc
/usr/share/licenses/postgresql-jdbc/LICENSE
/usr/share/maven-metadata/postgresql-jdbc.xml
/usr/share/maven-poms/postgresql-jdbc
/usr/share/maven-poms/postgresql-jdbc.pom
/usr/share/maven-poms/postgresql-jdbc/postgresql.pom


Generated by rpm2html 1.8.1

Fabrice Bellet, Wed Oct 22 22:25:06 2025