Oval Definition:oval:org.opensuse.security:def:81242
Revision Date:2017-09-05Version:1
Title:Security update for postgresql96 (Important)
Description:

This update for postgresql96 fixes the following issues:

CVE-2017-7547: Further restrict visibility of pg_user_mappings.umoptions, to protect passwords stored as user mapping options. (bsc#1051685) * CVE-2017-7546: Disallow empty passwords in all password-based authentication methods. (bsc#1051684) * CVE-2017-7548: lo_put() function ignores ACLs. (bsc#1053259)

The changelog for this release is here: https://www.postgresql.org/docs/9.6/static/release-9-6-4.html

Family:unixClass:patch
Status:Reference(s):1051684
1051685
1053259
CVE-2017-7546
CVE-2017-7547
CVE-2017-7548
SUSE-SU-2017:2356-1
Platform(s):SUSE Linux Enterprise Server 12 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libecpg6-9.6.4-3.6.1 is installed
  • OR libpq5-9.6.4-3.6.1 is installed
  • OR libpq5-32bit-9.6.4-3.6.1 is installed
  • OR postgresql96-9.6.4-3.6.1 is installed
  • OR postgresql96-contrib-9.6.4-3.6.1 is installed
  • OR postgresql96-docs-9.6.4-3.6.1 is installed
  • OR postgresql96-server-9.6.4-3.6.1 is installed
  • BACK