From: Marc Deslauriers
Date: May 13, 2019 9:10PM
It was discovered that PostgreSQL incorrectly handled partition routing. A
remote user could possibly use this issue to read arbitrary bytes of server
memory. This issue only affected Ubuntu 19.04. (CVE-2019-10129)
Dean Rasheed discovered that PostgreSQL incorrectly handled selectivity
estimators. A remote attacker could possibly use this issue to bypass row
security policies. (CVE-2019-10130)
References:
https://usn.ubuntu.com/usn/usn-3972-1
CVE-2019-10129, CVE-2019-10130
沒有留言:
張貼留言