Errata ID | 340 |
---|---|
Date | 2015-10-14 |
Source package | postgresql-9.1 |
Fixed in version | 9.1.16-0.9.201509171755 |
Description | This update to postgresql-9.1 fixes the following security issues: * Denial of service due to double-free after authentication timeout (CVE-2015-3165) * Information disclosure due to missing checks of return codes from the standard library (CVE-2015-3166) * Inconsistent error messages from contrib/pgcrypto (CVE-2015-3167) |
Additional notes | |
CVE ID | CVE-2015-3165 CVE-2015-3166 CVE-2015-3167 |
UCS Bug number | #38608 |