Category Archives: Advisories

USN-6656-2: PostgreSQL vulnerability

Read Time:20 Second

USN-6656-1 fixed several vulnerabilities in PostgreSQL. This update provides
the corresponding updates for Ubuntu 16.04 LTS

Original advisory details:

It was discovered that PostgreSQL incorrectly handled dropping privileges
when handling REFRESH MATERIALIZED VIEW CONCURRENTLY commands. If a user or
automatic system were tricked into running a specially crafted command, a
remote attacker could possibly use this issue to execute arbitrary SQL
functions.

Read More

rubygem-yard-0.9.36-1.fc38

Read Time:16 Second

FEDORA-2024-3744975c4b

Packages in this update:

rubygem-yard-0.9.36-1.fc38

Update description:

A security flaw was found on rubygem-yard that documents generated by yard may be vulnerable to XSS attack. This issue is now assigned as CVE-2024-27285 . This new rpm is supposed to fix this issue.

Read More