2019年6月1日 星期六

[USN-3972-1] PostgreSQL vulnerabilities

---------- Forwarded message ---------
From:  Marc Deslauriers
Date: May 13, 2019 9:10PM

It was discovered that PostgreSQL incorrectly handled partition routing. A
remote user could possibly use this issue to read arbitrary bytes of server
memory. This issue only affected Ubuntu 19.04. (CVE-2019-10129)

Dean Rasheed discovered that PostgreSQL incorrectly handled selectivity
estimators. A remote attacker could possibly use this issue to bypass row
security policies. (CVE-2019-10130)

References:
  https://usn.ubuntu.com/usn/usn-3972-1
  CVE-2019-10129, CVE-2019-10130

沒有留言:

張貼留言