USN-7520-1: PostgreSQL vulnerability
USN-7520-1: PostgreSQL vulnerability
Packages
- postgresql-12 - Object-relational SQL database
- postgresql-14 - Object-relational SQL database
- postgresql-16 - Object-relational SQL database
Details
It was discovered that PostgreSQL incorrectly handled the GB18030 encoding.
An attacker could possibly use this issue to cause PostgreSQL to crash,
resulting in a denial of service.
Update instructions
This update uses a new upstream release, which includes additional bug fixes. After a standard system update you need to restart PostgreSQL to make all the necessary changes.
The problem can be corrected by updating your system to the following package versions:
24.10
- oracular postgresql-16 – 16.9-0ubuntu0.24.10.1
- postgresql-client-16 – 16.9-0ubuntu0.24.10.1
24.04 - noble postgresql-16 – 16.9-0ubuntu0.24.04.1
- postgresql-client-16 – 16.9-0ubuntu0.24.04.1
22.04 - jammy postgresql-14 – 14.18-0ubuntu0.22.04.1
- postgresql-client-14 – 14.18-0ubuntu0.22.04.1
20.04 - focal postgresql-12 – 12.22-0ubuntu0.20.04.4
- postgresql-client-12 – 12.22-0ubuntu0.20.04.4