Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2017.0230
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2017-0230)
Zusammenfassung:The remote host is missing an update for the 'postgresql9.3, postgresql9.4' package(s) announced via the MGASA-2017-0230 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'postgresql9.3, postgresql9.4' package(s) announced via the MGASA-2017-0230 advisory.

Vulnerability Insight:
Robert Haas discovered that some selectivity estimators did not validate user
privileges which could result in information disclosure (CVE-2017-7484).

Daniel Gustafsson discovered that the PGREQUIRESSL environment variable did no
longer enforce a TLS connection (CVE-2017-7485).

Andrew Wheelwright discovered that user mappings were insufficiently restricted
(CVE-2017-7486).

Affected Software/OS:
'postgresql9.3, postgresql9.4' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-7484
BugTraq ID: 98459
http://www.securityfocus.com/bid/98459
Debian Security Information: DSA-3851 (Google Search)
http://www.debian.org/security/2017/dsa-3851
https://security.gentoo.org/glsa/201710-06
RedHat Security Advisories: RHSA-2017:1677
https://access.redhat.com/errata/RHSA-2017:1677
RedHat Security Advisories: RHSA-2017:1678
https://access.redhat.com/errata/RHSA-2017:1678
RedHat Security Advisories: RHSA-2017:1838
https://access.redhat.com/errata/RHSA-2017:1838
RedHat Security Advisories: RHSA-2017:1983
https://access.redhat.com/errata/RHSA-2017:1983
RedHat Security Advisories: RHSA-2017:2425
https://access.redhat.com/errata/RHSA-2017:2425
http://www.securitytracker.com/id/1038476
Common Vulnerability Exposure (CVE) ID: CVE-2017-7485
BugTraq ID: 98461
http://www.securityfocus.com/bid/98461
Common Vulnerability Exposure (CVE) ID: CVE-2017-7486
BugTraq ID: 98460
http://www.securityfocus.com/bid/98460
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.