UbuntuUpdates.org

Bugs fixes in "postgresql-16"

Origin Bug number Title Date fixed
CVE CVE-2025-8714 Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server to inject arbitrary code for restore-time executi 2025-09-08
CVE CVE-2025-8713 PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately, statistics allow a user to 2025-09-08
CVE CVE-2017-7484 It was found that some selectivity estimation functions in PostgreSQL before 9.2.21, 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, an 2025-09-08
Launchpad 2112531 New PostgreSQL upstream microreleases 14.19, 16.10, and 17.6 2025-09-08
CVE CVE-2025-4207 Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where 2025-05-21
Launchpad 2110377 New PostgreSQL upstream microreleases 14.18, 16.9, and 17.5 2025-05-21
CVE CVE-2025-4207 Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where 2025-05-21
Launchpad 2110377 New PostgreSQL upstream microreleases 14.18, 16.9, and 17.5 2025-05-21
CVE CVE-2025-4207 Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where 2025-05-20
Launchpad 2110377 New PostgreSQL upstream microreleases 14.18, 16.9, and 17.5 2025-05-20
CVE CVE-2025-4207 Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where 2025-05-20
Launchpad 2110377 New PostgreSQL upstream microreleases 14.18, 16.9, and 17.5 2025-05-20
CVE CVE-2025-1094 Improper neutralization of quoting syntax in PostgreSQL libpq functions PQescapeLiteral(), PQescapeIdentifier(), PQescapeString(), and PQescapeString 2025-03-03
Launchpad 2099900 New PostgreSQL upstream microreleases 14.17 and 16.8 2025-03-03
CVE CVE-2025-1094 Improper neutralization of quoting syntax in PostgreSQL libpq functions PQescapeLiteral(), PQescapeIdentifier(), PQescapeString(), and PQescapeString 2025-03-03
Launchpad 2099900 New PostgreSQL upstream microreleases 14.17 and 16.8 2025-03-03
CVE CVE-2025-1094 Improper neutralization of quoting syntax in PostgreSQL libpq functions PQescapeLiteral(), PQescapeIdentifier(), PQescapeString(), and PQescapeString 2025-03-03
Launchpad 2099900 New PostgreSQL upstream microreleases 14.17 and 16.8 2025-03-03
CVE CVE-2025-1094 Improper neutralization of quoting syntax in PostgreSQL libpq functions PQescapeLiteral(), PQescapeIdentifier(), PQescapeString(), and PQescapeString 2025-03-03
Launchpad 2099900 New PostgreSQL upstream microreleases 14.17 and 16.8 2025-03-03



About   -   Send Feedback to @ubuntu_updates