Le 2025-02-25 à 06 h 08, Christoph Berg a écrit :
Re: Jérôme Charaoui
Would it be possible to rollback the package to 47.7.3, which doesn't cause
the failure? Or review and adopt the fix proposed in upstream's PR?
IIRC there are a few security fixes in the latest versions, so
reverting wouldn't be ideal.
I've looked at the last two changelog entries and wasn't able to spot
any security issues: in https://jdbc.postgresql.org/changelogs/
I don't grok java, so I can't review it. Patches welcome...
Ideally, you would get it merged upstream first.
Right, unfortunately I think the contributors have made every effort to
have it merged, without any success so far.
I've looked into implementing a workaround in PuppetDB itself but it's
far from a straightforward fix. I suspect other dependent packages may
be broken in the same way, and we don't know about it because of the
lack of unit testing.
So, as things stand, it seems to me like a release critical bug.
-- Jérôme