English | Deutsch | Español | Português
 UserID:
 Passwd:
new user
 About:   Dedicated  | Advanced  | Standard  | Recurring  | No Risk  | Desktop  | Basic  | Single  | Security Seal  | FAQ
  Price/Feature Summary  | Order  | New Vulnerabilities  | Confidentiality  | Vulnerability Search
 Vulnerability   
Search   
    Search 143769 CVE descriptions
and 71225 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 --------------------------------------------------------------------------
   Turbolinux Security Advisory TLSA-2006-10
   http://www.turbolinux.co.jp/security/
                                             security-team@turbolinux.co.jp
 --------------------------------------------------------------------------

 Original released date: 06 Jul 2006
 Last revised: 06 Jul 2006

 Package: postgresql

 Summary: SQL injection

 More information:
    PostgreSQL is an advanced Object-Relational database management system
    (DBMS) that supports almost all SQL constructs
    SQL injection vulnerabilities exist in postgresql.

 Impact:
    This vulnerability may allow remote attackers to execute arbitrary code.

 Affected Products:
    - Turbolinux Appliance Server 1.0 Hosting Edition
    - Turbolinux Appliance Server 1.0 Workgroup Edition
    - Turbolinux 8 Server
    - Turbolinux 8 Workstation
    - Turbolinux 7 Server


 <Turbolinux Appliance Server 1.0 Hosting Edition>

   Source Packages
   Size: MD5

   postgresql-7.2.2-10.src.rpm
      9631536 bb8152f54807f4c317d9c3992fd2bb35

   Binary Packages
   Size: MD5

   postgresql-7.2.2-10.i586.rpm
      1072564 3602832347753547bfc3326121de5d59
   postgresql-contrib-7.2.2-10.i586.rpm
       985956 de68a62d55c366e8db824c363008725d
   postgresql-devel-7.2.2-10.i586.rpm
       581724 fa1d883fc5b0aa7a059d3ca7eef42963
   postgresql-docs-7.2.2-10.i586.rpm
       947247 7387230700e9540d4ee9bedb22aaa74f
   postgresql-jdbc-7.2.2-10.i586.rpm
       378903 eb4128125b3648d66abbba5dff3bdd72
   postgresql-libs-7.2.2-10.i586.rpm
        88407 a3539467650138f886c3bff0c6388b97
   postgresql-odbc-7.2.2-10.i586.rpm
       109977 0fa4412c2606a404e42bd2a45f1011b6
   postgresql-perl-7.2.2-10.i586.rpm
        59735 4f1095daddfca20f92e1d6d633e14b47
   postgresql-python-7.2.2-10.i586.rpm
        67435 db3f95f75bf30ef8e8702ec52ad55846
   postgresql-server-7.2.2-10.i586.rpm
      1392185 05eeed87d7490e37bb59ca0a751933b3
   postgresql-test-7.2.2-10.i586.rpm
       864015 593650c751f503af10caed2a44cfa700

 <Turbolinux Appliance Server 1.0 Workgroup Edition>

   Source Packages
   Size: MD5

   postgresql-7.2.2-10.src.rpm
      9631536 35c3c38ae67fba8a3eb2676d8b363772

   Binary Packages
   Size: MD5

   postgresql-7.2.2-10.i586.rpm
      1072151 5915157585c95f532cc86b22d43ddefb
   postgresql-contrib-7.2.2-10.i586.rpm
       985989 127492d81e7b0b6d3dba75640802be73
   postgresql-devel-7.2.2-10.i586.rpm
       581843 f3881f7ce63cf07b17cb2de5acb2704b
   postgresql-docs-7.2.2-10.i586.rpm
       947404 8e0afb9aa636d8a2f80a506d2d603799
   postgresql-jdbc-7.2.2-10.i586.rpm
       378857 d6ab62de5f45c2ce957a4f0b4ac101bd
   postgresql-libs-7.2.2-10.i586.rpm
        88620 12f36e44f8fcb52a792bf1153f994e33
   postgresql-odbc-7.2.2-10.i586.rpm
       110106 58bfcfe54079ce9bd05459c491fff518
   postgresql-perl-7.2.2-10.i586.rpm
        59938 5e19ca1b59711933b84e220a59fa5600
   postgresql-python-7.2.2-10.i586.rpm
        67684 8ae8abb890c1ff3f508c3c790bb4f385
   postgresql-server-7.2.2-10.i586.rpm
      1392280 b2a760c5ab6be20bde6d77a8df8f5f77
   postgresql-test-7.2.2-10.i586.rpm
       864138 21765ec19484ea9243c820a03a154b33

 <Turbolinux 8 Server>

   Source Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/SRPMS/postgresql-7.2.2-10.src.rpm
      9631536 0377b564d6965eb45af93a6c48c08ff2

   Binary Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-7.2.2-10.i586.rpm
      1073235 4c116f2e5c3a0db84910302bddd97785
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-contrib-7.2.2-10.i586.rpm
       988332 18b10e8a26fd0694684d5607721b77c7
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-devel-7.2.2-10.i586.rpm
       582286 63704b26879a52de84c928de2ac82713
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-docs-7.2.2-10.i586.rpm
       948016 6706a9b4a015372ff1576ab5c7be4eff
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-jdbc-7.2.2-10.i586.rpm
       378854 f45ef678d18a680920a7fdeb0e98d097
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-libs-7.2.2-10.i586.rpm
        88607 179e3b0723b2e8376e41dbd7484ab463
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-odbc-7.2.2-10.i586.rpm
       110139 137e7e9b8a79fd3ddff57e543ea4b46c
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-perl-7.2.2-10.i586.rpm
        59921 604980bc99ff7f15bc9effc53544a864
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-python-7.2.2-10.i586.rpm
        67697 21d1048b078f66ab53fe22fc0f045302
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-server-7.2.2-10.i586.rpm
      1393113 9594705e4755e81c013c7ae6dd4dec00
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-tcl-7.2.2-10.i586.rpm
        51030 5363bee41665673e75f372230c0360d5
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-test-7.2.2-10.i586.rpm
       863936 0aa85e61f5b40480a7bd80e0684fd4d8
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/updates/RPMS/postgresql-tk-7.2.2-10.i586.rpm
       424942 7bd967e1f18f4f76809f04ba08bf9b92

 <Turbolinux 8 Workstation>

   Source Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/SRPMS/postgresql-7.2.2-10.src.rpm
      9631536 b81febed0e0db59b0a23fa90fde4ecaa

   Binary Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-7.2.2-10.i586.rpm
      1072189 43184dea34fa216d90a53c07bc572284
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-contrib-7.2.2-10.i586.rpm
       988367 7313714d991c29289a2049d5ae22a62f
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-devel-7.2.2-10.i586.rpm
       581811 7c23847da229d6d2f286adb92175351d
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-docs-7.2.2-10.i586.rpm
       947568 47eff49cc1af3cbe4d83d5da43243476
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-jdbc-7.2.2-10.i586.rpm
       378933 03fca297f38e995c85abb40f38274817
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-libs-7.2.2-10.i586.rpm
        88622 b0e1cdabb33f70ab6c1187e7e5bb21dc
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-odbc-7.2.2-10.i586.rpm
       110107 6dc04b6b218bd0e4fc49472d34dc3245
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-perl-7.2.2-10.i586.rpm
        59954 228668202114f9c7d100a80d8ac2dd8e
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-python-7.2.2-10.i586.rpm
        67609 c02b5b5ee8880e0d5f7d8b54b2718391
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-server-7.2.2-10.i586.rpm
      1393047 3f3cbf468073aa196120aaaa8e3406b1
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-tcl-7.2.2-10.i586.rpm
        51035 29d2f93769957e4c7a8367da157630e9
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-test-7.2.2-10.i586.rpm
       864031 6ec443b6a368f41bc4f5748ac83330f9
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/8/updates/RPMS/postgresql-tk-7.2.2-10.i586.rpm
       424709 f770f6605a1cf4ceb1ea5d90314b4fba

 <Turbolinux 7 Server>

   Source Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/SRPMS/postgresql-7.2.2-10.src.rpm
      9631536 eb52d5c6b6741764977db8c9dd6fea54

   Binary Packages
   Size: MD5

   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-7.2.2-10.i586.rpm
      1067800 c6f782f107fc7c89e7a08b25e9c1db10
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-contrib-7.2.2-10.i586.rpm
       979697 de7ee22e84cc386dc8bd74b2d1d9443a
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-devel-7.2.2-10.i586.rpm
       570132 9e535676b72541f772d991cfe701cf1c
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-docs-7.2.2-10.i586.rpm
       947474 c118f57ea7258f662bdc2ebe26ff69e4
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-jdbc-7.2.2-10.i586.rpm
       378899 3e8795d2df8a1110209e1f045c5d95ce
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-libs-7.2.2-10.i586.rpm
        86656 85f0b423e52ce1ef397e96be49e1262b
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-odbc-7.2.2-10.i586.rpm
       107779 dded3165c8a33872db0b552dfe3e262f
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-perl-7.2.2-10.i586.rpm
        87689 fbb55c775e2041463e1e5673de99a5f5
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-python-7.2.2-10.i586.rpm
        66730 fe60862c571dea83bcfe1c2924993938
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-server-7.2.2-10.i586.rpm
      1368949 6fdf8d2798fae5da3a5e59a711ec86e0
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-tcl-7.2.2-10.i586.rpm
        51373 a27f83aca091afe00d1380ef7ac6f801
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-test-7.2.2-10.i586.rpm
       863693 c0e9586245ab578f37d150880475926b
   ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/updates/RPMS/postgresql-tk-7.2.2-10.i586.rpm
       424756 6615027ebcd1663a16df463dda89f7c8


 References:

 CVE
   [CAN-2006-2313]
   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2006-2313
   [CAN-2006-2314]
   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2006-2314

 --------------------------------------------------------------------------
 Revision History
    06 Jul 2006 Initial release
 --------------------------------------------------------------------------

 Copyright(C) 2006 Turbolinux, Inc. All rights reserved. 

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)

iD8DBQFErNaIK0LzjOqIJMwRAr3AAJ9mmahPzpCCLmwoqoAXZTLUQoYIyACgtt4D
fBGBTnhWeJ0FPk+adzu3lpM=
=SSbV
-----END PGP SIGNATURE-----

New User Registration
Email:
UserID:
Passwd:
Please email me your monthly newsletters, informing the latest services, improvements & surveys.
Please email me a vulnerability test announcement whenever a new test is added.
   Privacy
Registered User Login
 
UserID:   
Passwd:  

 Forgot userid or passwd?
Email/Userid:




Home | About Us | Contact Us | Partner Programs | Developer APIs | Privacy | Mailing Lists | Abuse
Security Audits | Managed DNS | Network Monitoring | Site Analyzer | Internet Research Reports
Web Probe

© 1998-2019 E-Soft Inc. All rights reserved.