postgresql-9.2.21-1.el7

エラータID: AXSA:2017-1914:01

リリース日: 
2017/08/28 Monday - 07:25
題名: 
postgresql-9.2.21-1.el7
影響のあるチャネル: 
Asianux Server 7 for x86_64
Severity: 
Moderate
Description: 

PostgreSQL is an advanced Object-Relational database management system (DBMS).
The base postgresql package contains the client programs that you'll need to
access a PostgreSQL DBMS server, as well as HTML documentation for the whole
system. These client programs can be located on the same machine as the
PostgreSQL server, or on a remote machine that accesses a PostgreSQL server
over a network connection. The PostgreSQL server can be found in the
postgresql-server sub-package.

CVE-2017-7484
It was found that some selectivity estimation functions in PostgreSQL
before 9.2.21, 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before
9.5.7, and 9.6.x before 9.6.3 did not check user privileges before
providing information from pg_statistic, possibly leaking information.
An unprivileged attacker could use this flaw to steal some information
from tables they are otherwise not allowed to access.
CVE-2017-7486
PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in
pg_user_mappings view which discloses foreign server passwords to any
user having USAGE privilege on the associated foreign server.

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. postgresql-9.2.21-1.el7.src.rpm
    MD5: 1b84996851e58025110354fd783b4a7f
    SHA-256: 1268aba42e8bf760aedcb82bd089a224ac22d56f3270e3a115efda51515529fb
    Size: 35.91 MB

Asianux Server 7 for x86_64
  1. postgresql-9.2.21-1.el7.x86_64.rpm
    MD5: 96e96c74545fa9de478a82890bea19af
    SHA-256: 81bf8179183747c1906545d4f7738936b1f8ac0b49403857b6089f7f26397d98
    Size: 3.02 MB
  2. postgresql-contrib-9.2.21-1.el7.x86_64.rpm
    MD5: 5578f3e9d351736b2c6ba0f0afe3d3ae
    SHA-256: 4da45549c9c428994833e70e4b8dde38bb8823c61ef10ea5dfd29dad1fa8c1fc
    Size: 550.79 kB
  3. postgresql-devel-9.2.21-1.el7.x86_64.rpm
    MD5: 75a0090d8eb674f70ff996ef55ca8d2a
    SHA-256: f254724708016f8db5df0375f18cbf049cb33358a74f51135f72315bc348f025
    Size: 950.33 kB
  4. postgresql-docs-9.2.21-1.el7.x86_64.rpm
    MD5: e0f77d255633f1676a84b099c55f7870
    SHA-256: bd35f0cbb524254496caa0930a55733f6101027aeeaa94646a526afa10a27471
    Size: 6.86 MB
  5. postgresql-libs-9.2.21-1.el7.x86_64.rpm
    MD5: 14e7a0dfed7a6a5064fe9f9f06ee8773
    SHA-256: 8601d84704f42de89b6aef9986211d596fc215e2e1697e6b51c0d4f5e5621af8
    Size: 231.99 kB
  6. postgresql-plperl-9.2.21-1.el7.x86_64.rpm
    MD5: 4d035ca1de4e01e77f63ed1ffc3579e1
    SHA-256: 2d51cb6d2b99982c7fc885217f71513a688afeba75709347699b784692c8cba9
    Size: 84.67 kB
  7. postgresql-plpython-9.2.21-1.el7.x86_64.rpm
    MD5: 66a285008bb3bcc0c34bad536953cfb9
    SHA-256: 862aad97fd4d88528952b7ba620b007e222c8a61a86b2e5a804328943d3effaf
    Size: 95.03 kB
  8. postgresql-pltcl-9.2.21-1.el7.x86_64.rpm
    MD5: e2f4f7810adac2e1fa101c16dc120611
    SHA-256: beb2eeefe7dc8ee4cc5aaf47c4d201ef9561cac0a69a6a74fe148777206a5872
    Size: 58.01 kB
  9. postgresql-server-9.2.21-1.el7.x86_64.rpm
    MD5: af8ff2f8b2ed09a75055d7026338558f
    SHA-256: 0ffdb9bd0a5ad646186a921a31f3bf6bb56b87d08c3a08e5dc571608eec59f3e
    Size: 3.78 MB
  10. postgresql-test-9.2.21-1.el7.x86_64.rpm
    MD5: 55515e796e3f02e0f130a41399ccd8dc
    SHA-256: d9b3a3b5e0fb9ab5d1b0e8bfa4557bb6533c379c4bbc4d0205dba218e4082bef
    Size: 1.76 MB
  11. postgresql-9.2.21-1.el7.i686.rpm
    MD5: 93e7e1b757ad886179d825b55d101e30
    SHA-256: 308438dbcef2e5db9ad25f1e16232e436cb7f949ff8d303da5c102eaaa0a1ed0
    Size: 3.01 MB
  12. postgresql-devel-9.2.21-1.el7.i686.rpm
    MD5: 525929a6cdb438ba031bdfad246a0662
    SHA-256: e6ce2e1fdbef69e32693a1e46538768d0b8c22ce45ebadc0232effd27550d00c
    Size: 944.23 kB
  13. postgresql-libs-9.2.21-1.el7.i686.rpm
    MD5: aaeb6a7c743ee3e60e54ac7ddd687bce
    SHA-256: e8a8e78f958c00b7809efdd9f9e36fa39d3ccbb312be63d2c7461fedccd834f4
    Size: 231.59 kB