Ubuntu Security Notice USN-5645-1

Discussion in 'News Aggregator' started by Packet Storm, 29 Sep 2022.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 5645-1 - Jacob Champion discovered that PostgreSQL incorrectly handled SSL certificate verification and encryption. A remote attacker could possibly use this issue to inject arbitrary SQL queries when a connection is first established. Tom Lane discovered that PostgreSQL incorrect handled certain array subscripting calculations. An authenticated attacker could possibly use this issue to overwrite server memory and escalate privileges.

    Continue reading...
     

Share This Page

Loading...