[Secure-testing-commits] r51539 - data/CVE
Christoph Berg
myon at moszumanska.debian.org
Thu May 11 13:11:06 UTC 2017
Author: myon
Date: 2017-05-11 13:11:06 +0000 (Thu, 11 May 2017)
New Revision: 51539
Modified:
data/CVE/list
Log:
Add more detail on the postgresql CVEs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-05-11 12:30:48 UTC (rev 51538)
+++ data/CVE/list 2017-05-11 13:11:06 UTC (rev 51539)
@@ -3707,23 +3707,23 @@
CVE-2017-7486 [Restrict visibility of pg_user_mappings.umoptions, to protect passwords stored as user mapping options]
RESERVED
- postgresql-9.6 9.6.3-1
- - postgresql-9.4 <removed>
- - postgresql-9.1 <removed>
- - postgresql-8.4 <removed>
+ [jessie] - postgresql-9.4 <removed>
+ [wheezy] - postgresql-9.1 <removed>
+ [squeeze] - postgresql-8.4 <not-affected> (feature not present in 8.x)
NOTE: https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=c928addfccd7f9905472dddd94e9cd10bc3f6808
CVE-2017-7485 [Restore libpq's recognition of the PGREQUIRESSL environment variable]
RESERVED
- postgresql-9.6 9.6.3-1
- - postgresql-9.4 <removed>
- - postgresql-9.1 <removed>
- - postgresql-8.4 <removed>
+ [jessie] - postgresql-9.4 <removed>
+ [wheezy] - postgresql-9.1 <not-affected> (bug introduced in 9.3)
+ [squeeze] - postgresql-8.4 <not-affected> (bug introduced in 9.3)
NOTE: https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=aafbd1df969135c185947c596c46608fc9f4a67c
CVE-2017-7484 [Prevent exposure of statistical information via leaky operators]
RESERVED
- postgresql-9.6 9.6.3-1
- - postgresql-9.4 <removed>
- - postgresql-9.1 <removed>
- - postgresql-8.4 <removed>
+ [jessie] - postgresql-9.4 <removed>
+ [wheezy] - postgresql-9.1 <removed>
+ [squeeze] - postgresql-8.4 <removed>
NOTE: https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=c33c42362256382ed398df9dcda559cd547c68a7
NOTE: https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=cad15943225adbcadea51602b38b04d71d1183d2
NOTE: https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=935e77d527a018b652f247c7374c558871210db6
More information about the Secure-testing-commits
mailing list