Oval Definition:oval:com.redhat.rhsa:def:20040489
Revision Date:2004-12-20Version:502
Title:RHSA-2004:489: rh-postgresql security update (Low)
Description:PostgreSQL is an advanced Object-Relational database management system (DBMS) that supports almost all SQL constructs (including transactions, subselects, and user-defined types and functions).

Trustix has identified improper temporary file usage in the make_oidjoins_check script. It is possible that an attacker could overwrite arbitrary file contents as the user running the make_oidjoins_check script. This script has been removed from the RPM file since it has no use to ordinary users. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0977 to this issue.

Additionally, the following non-security issues have been addressed:

- Fixed a low probability risk for loss of recently committed transactions.

- Fixed a low probability risk for loss of older data due to failure to update transaction status.

- A lock file problem that sometimes prevented automatic restart after a system crash has been fixed.

All users of rh-postgresql should upgrade to these updated packages, which resolve these issues.
Family:unixClass:patch
Status:Reference(s):CVE-2004-0977
RHSA-2004:489-01
Platform(s):Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 3 is installed
  • AND Package Information
  • rh-postgresql-jdbc is earlier than 0:7.3.8-2
  • AND rh-postgresql-jdbc is signed with Red Hat master key
  • OR
  • rh-postgresql-docs is earlier than 0:7.3.8-2
  • AND rh-postgresql-docs is signed with Red Hat master key
  • OR
  • rh-postgresql-contrib is earlier than 0:7.3.8-2
  • AND rh-postgresql-contrib is signed with Red Hat master key
  • OR
  • rh-postgresql is earlier than 0:7.3.8-2
  • AND rh-postgresql is signed with Red Hat master key
  • OR
  • rh-postgresql-python is earlier than 0:7.3.8-2
  • AND rh-postgresql-python is signed with Red Hat master key
  • OR
  • rh-postgresql-pl is earlier than 0:7.3.8-2
  • AND rh-postgresql-pl is signed with Red Hat master key
  • OR
  • rh-postgresql-devel is earlier than 0:7.3.8-2
  • AND rh-postgresql-devel is signed with Red Hat master key
  • OR
  • rh-postgresql-test is earlier than 0:7.3.8-2
  • AND rh-postgresql-test is signed with Red Hat master key
  • OR
  • rh-postgresql-tcl is earlier than 0:7.3.8-2
  • AND rh-postgresql-tcl is signed with Red Hat master key
  • OR
  • rh-postgresql-server is earlier than 0:7.3.8-2
  • AND rh-postgresql-server is signed with Red Hat master key
  • OR
  • rh-postgresql-libs is earlier than 0:7.3.8-2
  • AND rh-postgresql-libs is signed with Red Hat master key
  • BACK