Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Editor Blogs > Security

August 18th, 2012, 10:37 GMT · By

BLOG

Security Updates Released for PostgreSQL 9.1.5, 9.0.9, 8.4.13 and 8.3.20

SHARE:

Adjust text size:


PostgreSQL updated Enlarge picture - PostgreSQL updated
The PostgreSQL Global Development Group has released security updates for the 9.1.5, 9.0.9, 8.4.13 and 8.3.20 variants of its database systems.

The main issues addressed by these updates are the insecure use of libxslt (CVE-2012-3488) and libxml2 (CVE-2012-3489). These vulnerabilities could be leveraged by any authenticated attacker to read, respectively write, arbitrary files.

Several other fixes have been made to the 9.1 version of PostgreSQL.

The developer is notifying customers that in order to maintain security standards it has been forced to disable a couple of features: validation of externals DTDs using the built-in XML functionality, and the fetching of documents and style sheets from external URLs with the xslt_process() command.

PostgreSQL customers are advised to apply the updates to ensure that their databases are protected against potential cyberattacks.

The latest versions of PostgreSQL are available for download here.

TELL US WHAT YOU THINK:

1,269 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Symantec’s Road Runner Safe Storage Hacked, SwapDrive Flaw Possibly Leveraged (Updated)

Adobe Patches 26 Security Holes in Reader, Acrobat, Shockwave and Flash Player

Oracle Addresses Database Server Vulnerability Presented at Black Hat

Multiple Web Vulnerabilities Identified in SonicWALL Email Security (Video, Updated)

EMET 3.5 with ROP Mitigation Bypassed by Expert, Microsoft Responds

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM