Jacob Champion discovered that PostgreSQL incorrectly handled SSL
certificate verification and encryption. A remote attacker could possibly
use this issue to inject arbitrary SQL queries when a connection is first
established.
Category Archives: Advisories
CVE-2020-36565
Due to improper sanitization of user input on Windows, the static file handler allows for directory traversal, allowing an attacker to read files outside of the target directory that the server has permission to read.
python3.8-3.8.16-1.fc35
FEDORA-2022-e1ce71ff40
Packages in this update:
python3.8-3.8.16-1.fc35
Update description:
Update to 3.8.16
python3.8-3.8.16-1.fc36
FEDORA-2022-6d51289820
Packages in this update:
python3.8-3.8.16-1.fc36
Update description:
Update 3.8.16
python3.8-3.8.16-1.fc37
FEDORA-2022-18b234c18b
Packages in this update:
python3.8-3.8.16-1.fc37
Update description:
Update to 3.8.16
python3.7-3.7.16-1.fc35
FEDORA-2022-fdb2739feb
Packages in this update:
python3.7-3.7.16-1.fc35
Update description:
Update to 3.7.16
python3.7-3.7.16-1.fc36
FEDORA-2022-93c6916349
Packages in this update:
python3.7-3.7.16-1.fc36
Update description:
Update to 3.7.16
python3.7-3.7.16-1.fc37
FEDORA-2022-50deb53896
Packages in this update:
python3.7-3.7.16-1.fc37
Update description:
Update to 3.7.16
pgadmin4-6.17-1.fc37
FEDORA-2022-a97577b982
Packages in this update:
pgadmin4-6.17-1.fc37
Update description:
Update to pgadmin4-6.17, see https://www.pgadmin.org/docs/pgadmin4/development/release_notes_6_17.html for details.
qemu-7.0.0-12.fc37
FEDORA-2022-22b1f8dae2
Packages in this update:
qemu-7.0.0-12.fc37
Update description:
hcd-xhci: infinite loop in xhci_ring_chain_length (CVE-2020-14394)
ati-vga: out-of-bounds write in ati_2d_blt (CVE-2021-3638)
acpi erst: memory corruption issues (CVE-2022-4172)
qxl: qxl_phys2virt unsafe address translation (CVE-2022-4144)