USN-6656-2
Dashboard / Vulnerabilities / USN-6656-2
USN-6656-2
Summary: postgresql-9.5 vulnerability
Details: USN-6656-1 fixed several vulnerabilities in PostgreSQL. This update provides the corresponding updates for Ubuntu 16.04 LTS Original advisory details: It was discovered that PostgreSQL incorrectly handled dropping privileges when handling REFRESH MATERIALIZED VIEW CONCURRENTLY commands. If a user or automatic system were tricked into running a specially crafted command, a remote attacker could possibly use this issue to execute arbitrary SQL functions.
References: https://ubuntu.com/security/notices/USN-6656-2, https://ubuntu.com/security/CVE-2024-0985
Affected packages
Package
Name: postgresql-9.5
Purl: pkg:deb/ubuntu/postgresql-9.5?arch=source&distro=esm-infra%2Fxenial
Affected ranges
Type: ECOSYSTEM
Events:
