File _patchinfo of Package patchinfo.11275

<patchinfo incident="11275">
  <issue tracker="bnc" id="1138034">VUL-0: EMBARGOED: postgresql10: Out-of-cycle Release: 2019-06-20</issue>
  <issue tracker="bnc" id="1134689">VUL-1: CVE-2019-10130: postgresql96,postgresql10,postgresql11: potential bypass of security policy allows a user to read restricted data</issue>
  <issue tracker="cve" id="2019-10130"/>
  <issue tracker="cve" id="2019-10164"/>
  <category>security</category>
  <rating>moderate</rating>
  <packager>rmax</packager>
  <description>This update for postgresql10 fixes the following issues:

Security issue fixed:
- CVE-2019-10164: Fixed buffer-overflow vulnerabilities in SCRAM verifier parsing (bsc#1138034).
- CVE-2019-10130: Prevent row-level security policies from being bypassed via selectivity estimators (bsc#1134689).

Bug fixes:

- For a complete list of fixes check the release notes.
 
   * https://www.postgresql.org/docs/10/release-10-9.html
   * https://www.postgresql.org/docs/10/release-10-8.html
   * https://www.postgresql.org/docs/10/release-10-7.html
</description>
  <summary>Security update for postgresql10</summary>
</patchinfo>
openSUSE Build Service is sponsored by