Oval Definition:oval:com.redhat.rhsa:def:20152081
Revision Date:2015-11-18Version:639
Title:RHSA-2015:2081: postgresql security update (Moderate)
Description:PostgreSQL is an advanced object-relational database management system (DBMS).

  • A memory leak error was discovered in the crypt() function of the pgCrypto extension. An authenticated attacker could possibly use this flaw to disclose a limited amount of the server memory. (CVE-2015-5288)

    All PostgreSQL users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. If the postgresql service is running, it will be automatically restarted after installing this update.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2015-5288
    RHSA-2015:2081
    RHSA-2015:2081-00
    RHSA-2015:2081-01
    Platform(s):Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • postgresql is earlier than 0:8.4.20-4.el6_7
  • AND postgresql is signed with Red Hat redhatrelease2 key
  • postgresql-contrib is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-contrib is signed with Red Hat redhatrelease2 key
  • postgresql-devel is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-devel is signed with Red Hat redhatrelease2 key
  • postgresql-docs is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-docs is signed with Red Hat redhatrelease2 key
  • postgresql-libs is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-libs is signed with Red Hat redhatrelease2 key
  • postgresql-plperl is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-plperl is signed with Red Hat redhatrelease2 key
  • postgresql-plpython is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-plpython is signed with Red Hat redhatrelease2 key
  • postgresql-pltcl is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-pltcl is signed with Red Hat redhatrelease2 key
  • postgresql-server is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-server is signed with Red Hat redhatrelease2 key
  • postgresql-test is earlier than 0:8.4.20-4.el6_7
  • AND postgresql-test is signed with Red Hat redhatrelease2 key
  • BACK