Release date:
Updated on:
Affected Systems:
PostgreSQL 8.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 65731
CVE (CAN) ID: CVE-2014-0065
PostgreSQL is an advanced object-relational database management system that supports extended SQL standard subsets.
PostgreSQL versions earlier than 9.2.7, 9.1.12, 9.0.16, and 8.4.20 have multiple buffer overflow vulnerabilities. authenticated database users can exploit these vulnerabilities to crash or execute arbitrary code on the PostgreSQL server.
<* Source: Jozef Mlich
Peter Eisentraut
Link: https://bugzilla.redhat.com/show_bug.cgi? CVE-2014-0065
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
PostgreSQL
----------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.postgresql.org,