Oval Definition:oval:com.redhat.rhsa:def:20070064
Revision Date:2007-02-07Version:635
Title:RHSA-2007:0064: postgresql security update (Moderate)
Description:PostgreSQL is an advanced Object-Relational database management system (DBMS).

A flaw was found in the way the PostgreSQL server handles certain SQL-language functions. An authenticated user could execute a sequence of commands which could crash the PostgreSQL server or possibly read from arbitrary memory locations. A user would need to have permissions to drop and add database tables to be able to exploit this issue (CVE-2007-0555).

  • A denial of service flaw was found affecting the PostgreSQL server running on Red Hat Enterprise Linux 4 systems. An authenticated user could execute an SQL command which could crash the PostgreSQL server. (CVE-2006-5540)

    Users of PostgreSQL should upgrade to these updated packages containing PostgreSQL version 7.4.16 or 7.3.18, which correct these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2006-5540
    CVE-2007-0555
    RHSA-2007:0064
    RHSA-2007:0064-01
    RHSA-2007:0064-01
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • rh-postgresql-server is earlier than 0:7.3.18-1
  • AND rh-postgresql-server is signed with Red Hat master key
  • rh-postgresql-devel is earlier than 0:7.3.18-1
  • AND rh-postgresql-devel is signed with Red Hat master key
  • rh-postgresql-libs is earlier than 0:7.3.18-1
  • AND rh-postgresql-libs is signed with Red Hat master key
  • rh-postgresql-jdbc is earlier than 0:7.3.18-1
  • AND rh-postgresql-jdbc is signed with Red Hat master key
  • rh-postgresql-docs is earlier than 0:7.3.18-1
  • AND rh-postgresql-docs is signed with Red Hat master key
  • rh-postgresql-pl is earlier than 0:7.3.18-1
  • AND rh-postgresql-pl is signed with Red Hat master key
  • rh-postgresql-tcl is earlier than 0:7.3.18-1
  • AND rh-postgresql-tcl is signed with Red Hat master key
  • rh-postgresql is earlier than 0:7.3.18-1
  • AND rh-postgresql is signed with Red Hat master key
  • rh-postgresql-python is earlier than 0:7.3.18-1
  • AND rh-postgresql-python is signed with Red Hat master key
  • rh-postgresql-contrib is earlier than 0:7.3.18-1
  • AND rh-postgresql-contrib is signed with Red Hat master key
  • rh-postgresql-test is earlier than 0:7.3.18-1
  • AND rh-postgresql-test is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • postgresql is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql is signed with Red Hat master key
  • postgresql-docs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-docs is signed with Red Hat master key
  • postgresql-jdbc is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-jdbc is signed with Red Hat master key
  • postgresql-devel is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-devel is signed with Red Hat master key
  • postgresql-tcl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-tcl is signed with Red Hat master key
  • postgresql-test is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-test is signed with Red Hat master key
  • postgresql-python is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-python is signed with Red Hat master key
  • postgresql-pl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-pl is signed with Red Hat master key
  • postgresql-server is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-server is signed with Red Hat master key
  • postgresql-libs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-libs is signed with Red Hat master key
  • postgresql-contrib is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-contrib is signed with Red Hat master key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • rh-postgresql is earlier than 0:7.3.18-1
  • AND rh-postgresql is signed with Red Hat master key
  • rh-postgresql-contrib is earlier than 0:7.3.18-1
  • AND rh-postgresql-contrib is signed with Red Hat master key
  • rh-postgresql-devel is earlier than 0:7.3.18-1
  • AND rh-postgresql-devel is signed with Red Hat master key
  • rh-postgresql-docs is earlier than 0:7.3.18-1
  • AND rh-postgresql-docs is signed with Red Hat master key
  • rh-postgresql-jdbc is earlier than 0:7.3.18-1
  • AND rh-postgresql-jdbc is signed with Red Hat master key
  • rh-postgresql-libs is earlier than 0:7.3.18-1
  • AND rh-postgresql-libs is signed with Red Hat master key
  • rh-postgresql-pl is earlier than 0:7.3.18-1
  • AND rh-postgresql-pl is signed with Red Hat master key
  • rh-postgresql-python is earlier than 0:7.3.18-1
  • AND rh-postgresql-python is signed with Red Hat master key
  • rh-postgresql-server is earlier than 0:7.3.18-1
  • AND rh-postgresql-server is signed with Red Hat master key
  • rh-postgresql-tcl is earlier than 0:7.3.18-1
  • AND rh-postgresql-tcl is signed with Red Hat master key
  • rh-postgresql-test is earlier than 0:7.3.18-1
  • AND rh-postgresql-test is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • postgresql is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql is signed with Red Hat master key
  • postgresql-contrib is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-contrib is signed with Red Hat master key
  • postgresql-devel is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-devel is signed with Red Hat master key
  • postgresql-docs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-docs is signed with Red Hat master key
  • postgresql-jdbc is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-jdbc is signed with Red Hat master key
  • postgresql-libs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-libs is signed with Red Hat master key
  • postgresql-pl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-pl is signed with Red Hat master key
  • postgresql-python is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-python is signed with Red Hat master key
  • postgresql-server is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-server is signed with Red Hat master key
  • postgresql-tcl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-tcl is signed with Red Hat master key
  • postgresql-test is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-test is signed with Red Hat master key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • postgresql is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql is signed with Red Hat redhatrelease2 key
  • postgresql-contrib is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-contrib is signed with Red Hat redhatrelease2 key
  • postgresql-devel is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-devel is signed with Red Hat redhatrelease2 key
  • postgresql-docs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-docs is signed with Red Hat redhatrelease2 key
  • postgresql-jdbc is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-jdbc is signed with Red Hat redhatrelease2 key
  • postgresql-libs is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-libs is signed with Red Hat redhatrelease2 key
  • postgresql-pl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-pl is signed with Red Hat redhatrelease2 key
  • postgresql-python is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-python is signed with Red Hat redhatrelease2 key
  • postgresql-server is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-server is signed with Red Hat redhatrelease2 key
  • postgresql-tcl is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-tcl is signed with Red Hat redhatrelease2 key
  • postgresql-test is earlier than 0:7.4.16-1.RHEL4.1
  • AND postgresql-test is signed with Red Hat redhatrelease2 key
  • BACK