Oval Definition:oval:org.mitre.oval:def:23539
Revision Date:2014-05-26Version:15
Title:ELSA-2011:0197: postgresql security update (Moderate)
Description:Buffer overflow in the gettoken function in contrib/intarray/_int_bool.c in the intarray array module in PostgreSQL 9.0.x before 9.0.3, 8.4.x before 8.4.7, 8.3.x before 8.3.14, and 8.2.x before 8.2.20 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via integers with a large number of digits to unspecified functions.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-4015
ELSA-2011:0197-01
Platform(s):Oracle Linux 6
Product(s):postgresql
Definition Synopsis
  • Oracle Linux 6.x
  • AND rpm test
  • postgresql is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-server is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-libs is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-devel is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-pltcl is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-plpython is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-docs is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-plperl is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-test is earlier than 0:8.4.7-1.el6_0.1
  • OR postgresql-contrib is earlier than 0:8.4.7-1.el6_0.1
  • BACK