Description: | Description:
The remote host is missing an update to python-pgsql announced via advisory USN-288-1.
A security issue affects the following Ubuntu releases:
Ubuntu 5.04 (Hoary Hedgehog) Ubuntu 5.10 (Breezy Badger)
The following packages are affected: libpq3 libpq4 postgresql postgresql-7.4 postgresql-8.0 postgresql-client postgresql-client-7.4 postgresql-client-8.0 postgresql-contrib postgresql-contrib-7.4 postgresql-contrib-8.0 python2.3-pgsql python2.3-psycopg python2.4-pgsql python2.4-psycopg
Please see http://www.postgresql.org/docs/techdocs.50 for further details, or visit the referenced security advisories.
The psycopg and python-pgsql packages have been updated to consistently use >>''
Solution: The problem can be corrected by upgrading the affected packages to the following versions:
Ubuntu 5.04: postgresql: 7.4.7-2ubuntu2.3 postgresql-client: 7.4.7-2ubuntu2.3 postgresql-contrib: 7.4.7-2ubuntu2.3 libpq3: 7.4.7-2ubuntu2.3 python2.3-pgsql: 2.4.0-5ubuntu2.1 python2.4-pgsql: 2.4.0-5ubuntu2.1 python2.3-psycopg: 1.1.18-1ubuntu5.1 python2.4-psycopg: 1.1.18-1ubuntu5.1
Ubuntu 5.10: postgresql-7.4: 1:7.4.8-17ubuntu1.3 postgresql-client-7.4: 1:7.4.8-17ubuntu1.3 postgresql-contrib-7.4: 1:7.4.8-17ubuntu1.3 libpq3: 1:7.4.8-17ubuntu1.3 postgresql-8.0: 8.0.3-15ubuntu2.2 postgresql-client-8.0: 8.0.3-15ubuntu2.2 postgresql-contrib-8.0: 8.0.3-15ubuntu2.2 libpq4: 8.0.3-15ubuntu2.2 python2.3-pgsql: 2.4.0-6ubuntu1.1 python2.4-pgsql: 2.4.0-6ubuntu1.1 python2.3-psycopg: 1.1.18-1ubuntu6.1 python2.4-psycopg: 1.1.18-1ubuntu6.1
In general, a standard system upgrade is sufficient to effect the necessary changes. However, if you run third party applications that use PostgreSQL, you might need further fixes, please see the details below.
http://www.securityspace.com/smysecure/catid.html?in=USN-288-1
Risk factor : High
CVSS Score: 7.5
|