SUSE-SU-2021:1970-1
Dashboard / Vulnerabilities / SUSE-SU-2021:1970-1
SUSE-SU-2021:1970-1
Summary: Security update for postgresql10
Details: This update for postgresql10 fixes the following issues: - Upgrade to version 10.17: - CVE-2021-32027: Fixed integer overflows in array subscripting calculations (bsc#1185924). - CVE-2021-32028: Fixed mishandling of junk columns in INSERT ... ON CONFLICT ... UPDATE target lists (bsc#1185925). - Don't use %_stop_on_removal, because it was meant to be private and got removed from openSUSE. %_restart_on_update is also private, but still supported and needed for now (bsc#1183168).
References: https://www.suse.com/support/update/announcement/2021/suse-su-20211970-1/, https://bugzilla.suse.com/1183168, https://bugzilla.suse.com/1185924, https://bugzilla.suse.com/1185925, https://www.suse.com/security/cve/CVE-2021-32027, https://www.suse.com/security/cve/CVE-2021-32028
Affected packages
Package
Name: postgresql10
Purl: pkg:rpm/suse/postgresql10&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
