Feeds

Actualités informatiques

DSA-4623 postgresql-11

Debian Security Advisory

DSA-4623-1 postgresql-11 -- security update

Date Reported:
13 Feb 2020
Affected Packages:
postgresql-11
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2020-1720.
More information:

Tom Lane discovered that ALTER ... DEPENDS ON EXTENSION sub commands in the PostgreSQL database did not perform authorisation checks.

For the stable distribution (buster), this problem has been fixed in version 11.7-0+deb10u1.

We recommend that you upgrade your postgresql-11 packages.

For the detailed security status of postgresql-11 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/postgresql-11