Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:10787

Опубликовано: 19 дек. 2024
Источник: rocky
Оценка: Important

Описание

Important: postgresql:15 security update

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: PostgreSQL SET ROLE, SET SESSION AUTHORIZATION reset to wrong user ID (CVE-2024-10978)

  • postgresql: PostgreSQL PL/Perl environment variable changes execute arbitrary code (CVE-2024-10979)

  • postgresql: PostgreSQL row security below e.g. subqueries disregards user ID changes (CVE-2024-10976)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
pgauditx86_641.module+el9.6.0+32420+37c3e639pgaudit-1.7.0-1.module+el9.6.0+32420+37c3e639.x86_64.rpm
pg_repackx86_642.module+el9.6.0+32420+37c3e639pg_repack-1.4.8-2.module+el9.6.0+32420+37c3e639.x86_64.rpm
postgres-decoderbufsx86_641.Final.module+el9.6.0+32420+37c3e639postgres-decoderbufs-1.9.7-1.Final.module+el9.6.0+32420+37c3e639.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
12 месяцев назад

Important: postgresql:13 security update

rocky
12 месяцев назад

Important: postgresql:16 security update

rocky
12 месяцев назад

Important: postgresql:15 security update

rocky
12 месяцев назад

Important: postgresql:16 security update

rocky
12 месяцев назад

Important: postgresql:12 security update