openSUSE-SU-2021:3759-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:3759-1
openSUSE-SU-2021:3759-1
Summary: Security update for postgresql14
Details: This update for postgresql14 fixes the following issues: - CVE-2021-23214: Make the server reject extraneous data after an SSL or GSS encryption handshake (bsc#1192516). - CVE-2021-23222: Make libpq reject extraneous data after an SSL or GSS encryption handshake (bsc#1192516). - Let rpmlint ignore shlib-policy-name-error (boo#1191782).
References: https://lists.opensuse.org/archives/list/[email protected]/thread/NNALH7TSYYNMSZ7EMUEZ2S7IBYAU75OE/, https://bugzilla.suse.com/1191782, https://bugzilla.suse.com/1192516, https://www.suse.com/security/cve/CVE-2021-23214, https://www.suse.com/security/cve/CVE-2021-23222
Affected packages
Package
Name: postgresql14
Purl: pkg:rpm/opensuse/postgresql14&distro=openSUSE%20Leap%2015.3
Affected ranges
Type: ECOSYSTEM
Events:
