Skip to content
This repository has been archived by the owner on May 12, 2020. It is now read-only.

Security update 10.5, 9.6.10, 9.5.14 - CVE-2018-10915, CVE-2018-10925 #138

Merged
merged 1 commit into from
Aug 14, 2018

Conversation

julianladisch
Copy link
Contributor

This PostgreSQL release fixes two security issues as well as bugs reported over the last three months.

  • CVE-2018-10915: Certain host connection parameters defeat client-side security defenses
  • CVE-2018-10925: Memory disclosure and missing authorization in INSERT ... ON CONFLICT DO UPDATE

Full PostgreSQL release note: https://www.postgresql.org/about/news/1878/

This PostgreSQL release fixes two security issues as well as bugs reported over the last three months.

* CVE-2018-10915: Certain host connection parameters defeat client-side security defenses
* CVE-2018-10925: Memory disclosure and missing authorization in INSERT ... ON CONFLICT DO UPDATE

Full PostgreSQL release note: https://www.postgresql.org/about/news/1878/
@smecsia smecsia merged commit d0a65e6 into yandex-qatools:master Aug 14, 2018
@smecsia
Copy link
Member

smecsia commented Aug 14, 2018

Thank you!

@julianladisch julianladisch deleted the postgresql-10.5 branch August 17, 2018 12:55
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants