RLSA-2023:3714

Source
https://storage.googleapis.com/resf-osv-data/RLSA-2023:3714.json
Published
2023-08-31T16:55:40.275990Z
Modified
2023-08-31T16:56:55.361876Z
Details

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: schemaelement defeats protective searchpath changes (CVE-2023-2454)

  • postgresql: row security policies disregard user ID changes after inlining. (CVE-2023-2455)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

Rocky Linux:9 / postgresql

Source Details

Package Name
postgresql

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
0:13.11-1.el9_2