oss-sec mailing list archives

Re: CVE Request -- PostgreSQL


From: Tomas Hoger <thoger () redhat com>
Date: Wed, 9 Sep 2009 16:23:15 +0200

On Wed, 09 Sep 2009 16:08:10 +0200 Jan Lieskovsky <jlieskov () redhat com>
wrote:

   PostgreSQL upstream is on their security page
mentioning three security issues, which lack CVE ids:

http://www.postgresql.org/support/security.html

Just a note: upstream page currently says the second issue is related
to CVE-2007-2138, but our maintainer also active upstream reports it
should say CVE-2007-6600.

https://bugzilla.redhat.com/show_bug.cgi?id=522085#c1

I can't confirm either atm, so just a heads-up to avoid possible
confusion related to CVE wording.

-- 
Tomas Hoger / Red Hat Security Response Team


Current thread: