Ubuntu: PostgreSQL vulnerabilities


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) Ubuntu: PostgreSQL vulnerabilities
# 1  
Old 01-14-2008
Ubuntu: PostgreSQL vulnerabilities

LinuxSecurity.com: Nico Leidecker discovered that PostgreSQL did not properly restrict dblink functions. An authenticated user could exploit this flaw to access arbitrary accounts and execute arbitrary SQL queries. (CVE-2007-3278, CVE-2007-6601)

More...
Login or Register to Ask a Question

Previous Thread | Next Thread

1 More Discussions You Might Find Interesting

1. Ubuntu

istalling postgresql driver on ubuntu

Hello everybody i am working on ubuntu 9.4 and i want to connect from erlang program to postgresql database i download the driver for postgresql from Open Source Projects from Erlang Training and Consultng Ltd. then i try to setup this driver using make install and it didn't work, So can... (4 Replies)
Discussion started by: Reham$
4 Replies
Login or Register to Ask a Question
PGSQL2DLF.IN(1) 					  LogReport's Lire Documentation					   PGSQL2DLF.IN(1)

NAME
pgsql2dlf - convert pgsql logfiles to dlf format SYNOPSIS
pgsql2dlf DESCRIPTION
pgsql2dlf converts a PostgreSQL query log file to DLF format. Information on PostgreSQL can be found on http://www.postgresql.org/. Logging can be enabled in the postgresql.conf file. The following options should be present at least for this converter to work well: debug_level = 1 debug_print_parse = on debug_print_query = on The generic database dlf format is described in database.xml. EXAMPLES
To process a log as produced by PostgreSQL: $ pgsql2dlf < /var/log/postgresql.log pgsql2dlf will be rarely used on its own, but is more likely called by lr_log2report: $ lr_log2report pgsql < /var/log/postgresql.log NOTES
The parser has been tested for log files from PostgreSQL 7.2.1. SEE ALSO
psql(1), postmaster(1), postgresql.conf(5) VERSION
$Id: pgsql2dlf.in,v 1.12 2006/07/23 13:16:33 vanbaal Exp $ COPYRIGHT
Copyright (C) 2002 Stichting LogReport Foundation LogReport@LogReport.org This file is part of Lire. Lire is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program (see COPYING); if not, check with http://www.gnu.org/copyleft/gpl.html. AUTHOR
Wessel Dankers <wsl@logreport.org> Lire 2.1.1 2006-07-23 PGSQL2DLF.IN(1)