MGASA-2015-0207

Source
https://advisories.mageia.org/MGASA-2015-0207.html
Import Source
https://advisories.mageia.org/MGASA-2015-0207.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0207
Published
2015-05-11T20:10:38Z
Modified
2026-04-16T04:28:39.389442Z
Summary
Updated postgis packages fix security vulnerabilities
Details

Updated postgis packages fix security vulnerability:

The PostGIS Raster support in PostGIS before 2.1.3 may give more privileges to users than an administrator is willing to grant. These include reading files from the filesystem and opening connections to network hosts.

The postgis package has been updated to version 2.1.7, fixing this issue and several other bugs.

Please see the upstream release announcements and NEWS for more information.

References
Credits

Affected packages

Mageia:4 / postgis

Package

Name
postgis
Purl
pkg:rpm/mageia/postgis?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.1.7-1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0207.json"