Bugzilla – Bug 660478
VUL-0: PostgreSQL intarray buffer overflow
Last modified: 2011-06-10 14:08:27 UTC
Your friendly security team received the following report via vendor-sec. Please respond ASAP. This issue is not public yet, please keep any information about it inside SUSE. Note that build.opensuse.org *cannot* be used to prepare embargoed updates. CVE-ID: CVE-2010-4015 Impact: An attacker who can cause the PostgreSQL server to execute certain commands may cause a denial of the PostgreSQL service or execute arbitrary code. Description: A buffer overflow exists in the intarray module of the PostgreSQL server. An attacker who can send a command to the PostgreSQL server with a long query_int parameter to the @@ or ~~ operators may cause a denial of the PostgreSQL service or execute arbitrary code. This issue is addressed by improved bounds checking. This issue does not affect Mac OS X. Credit: Apple.
public now http://www.postgresql.org/about/news.1289 http://git.postgresql.org/gitweb?p=postgresql.git;a=commitdiff;h=7ccb6dc2d3e266a551827bb99179708580f72431
Packages submitted to SLES10-SP3, SLE11-SP1, 11.2, and 11.3.
Update released for: postgresql, postgresql-contrib, postgresql-contrib-debuginfo, postgresql-debuginfo, postgresql-debugsource, postgresql-devel, postgresql-devel-debuginfo, postgresql-docs, postgresql-libs, postgresql-libs-debuginfo, postgresql-server, postgresql-server-debuginfo Products: openSUSE 11.2 (debug, i586, x86_64) openSUSE 11.3 (debug, i586, x86_64)
released
Update released for: postgresql, postgresql-contrib, postgresql-debuginfo, postgresql-devel, postgresql-docs, postgresql-libs, postgresql-libs-32bit, postgresql-libs-64bit, postgresql-libs-x86, postgresql-pl, postgresql-server Products: SLE-DESKTOP 10-SP3 (i386, x86_64) SLE-SAP-APL 10-SP3 (x86_64) SLE-SDK 10-SP3 (i386, ia64, ppc, s390x, x86_64) SLE-SERVER 10-SP3 (i386, ia64, ppc, s390x, x86_64)
Update released for: postgresql, postgresql-contrib, postgresql-debuginfo, postgresql-devel, postgresql-docs, postgresql-libs, postgresql-libs-32bit, postgresql-libs-64bit, postgresql-libs-x86, postgresql-pl, postgresql-server Products: SLE-DESKTOP 10-SP4 (i386, x86_64) SLE-SDK 10-SP4 (i386, ia64, ppc, s390x, x86_64) SLE-SERVER 10-SP4 (i386, ia64, ppc, s390x, x86_64)
Update released for: postgresql, postgresql-contrib, postgresql-debuginfo, postgresql-debugsource, postgresql-devel, postgresql-docs, postgresql-libs, postgresql-libs-32bit, postgresql-libs-x86, postgresql-pl, postgresql-plperl, postgresql-plpython, postgresql-pltcl, postgresql-server Products: SLE-DEBUGINFO 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLE-DESKTOP 11-SP1 (i386, x86_64) SLE-SDK 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLE-SERVER 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLES4VMWARE 11-SP1 (i386, x86_64)
*** Bug 684292 has been marked as a duplicate of this bug. ***