Path to this page:
Subject: CVS commit: pkgsrc/databases/postgres_exporter
From: Benny Siegert
Date: 2023-12-22 18:43:57
Message id: 20231222174357.B7D30FA42@cvs.NetBSD.org
Log Message:
postgres_exporter: update to 0.15.0 (security)
This fixes the following vulnerabilities:
Vulnerability: GO-2023-1571
Denial of service via crafted HTTP/2 stream in net/http and golang.org/x/net
More info: https://pkg.go.dev/vuln/GO-2023-1571
Module: golang.org/x/net
Found in: golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
Fixed in: golang.org/x/net@v0.7.0
Vulnerability: GO-2022-1130
Authentication bypass in github.com/prometheus/exporter-toolkit
More info: https://pkg.go.dev/vuln/GO-2022-1130
Module: github.com/prometheus/exporter-toolkit
Found in: github.com/prometheus/exporter-toolkit@v0.7.1
Fixed in: github.com/prometheus/exporter-toolkit@v0.8.2
0.15.0
------
- Add 1kB and 2kB units
- Add error log when probe collector creation fails
- Fix test build failures on 32-bit arch
- Adjust collector to use separate connection per scrape
0.14.0
------
- Add state label to pg_process_idle_seconds
- Change database connections to one per scrape
0.13.0
------
BREAKING CHANGES:
Please note, the following features are deprecated and may be removed in a \
future release:
auto-discover-databases
extend.query-path
constantLabels
exclude-databases
include-databases
This exporter is meant to monitor PostgresSQL servers, not the user \
data/databases. If
you need a generic SQL report exporter \
https://github.com/burningalchemist/sql_exporter
is recommended.
0.12.0
------
BREAKING CHANGES:
This release changes support for multiple postgres servers to use the
multi-target exporter pattern. This makes it much easier to monitor multiple
PostgreSQL servers from a single exporter by passing the target via URL
params. See the Multi-Target Support section of the README.
Files: