File _patchinfo of Package patchinfo.11275
<patchinfo incident="11275">
<issue tracker="bnc" id="1138034">VUL-0: EMBARGOED: postgresql10: Out-of-cycle Release: 2019-06-20</issue>
<issue tracker="bnc" id="1134689">VUL-1: CVE-2019-10130: postgresql96,postgresql10,postgresql11: potential bypass of security policy allows a user to read restricted data</issue>
<issue tracker="cve" id="2019-10130"/>
<issue tracker="cve" id="2019-10164"/>
<category>security</category>
<rating>moderate</rating>
<packager>rmax</packager>
<description>This update for postgresql10 fixes the following issues:
Security issue fixed:
- CVE-2019-10164: Fixed buffer-overflow vulnerabilities in SCRAM verifier parsing (bsc#1138034).
- CVE-2019-10130: Prevent row-level security policies from being bypassed via selectivity estimators (bsc#1134689).
Bug fixes:
- For a complete list of fixes check the release notes.
* https://www.postgresql.org/docs/10/release-10-9.html
* https://www.postgresql.org/docs/10/release-10-8.html
* https://www.postgresql.org/docs/10/release-10-7.html
</description>
<summary>Security update for postgresql10</summary>
</patchinfo>