当前位置:网站首页>Cloud security daily 220623: the red hat database management system has found an arbitrary code execution vulnerability and needs to be upgraded as soon as possible
Cloud security daily 220623: the red hat database management system has found an arbitrary code execution vulnerability and needs to be upgraded as soon as possible
2022-06-23 18:50:00 【TechWeb】
6 month 22 Japan , Red hat has released a security update , Fixed the red hat relational database management system PostgreSQL Arbitrary code execution vulnerability found in . Here are the details of the vulnerability :
Vulnerability Details
source :https://access.redhat.com/errata/RHSA-2022:5162
CVE-2022-1552 CVSS score :8.8 severity : high
stay PostgreSQL A hole was found in . When a privileged user maintains another user's object , Incomplete efforts for safe operation will cause problems .Autovacuum、REINDEX、CREATE INDEX、REFRESH MATERIALIZED VIEW、CLUSTER and pg_amcheck The command is too late in the process or the relevant protection is not activated at all . This vulnerability allows an attacker to create non temporary objects in at least one mode , To execute any... As superuser SQL function .
Affected products and versions
Red Hat Enterprise Linux Server 7 x86_64
Red Hat Enterprise Linux Workstation 7 x86_64
Red Hat Enterprise Linux Desktop 7 x86_64
Red Hat Enterprise Linux for IBM z Systems 7 s390x
Red Hat Enterprise Linux for Power, big endian 7 ppc64
Red Hat Enterprise Linux for Scientific Computing 7 x86_64
Red Hat Enterprise Linux for Power, little endian 7 ppc64le
Solution
RedHat Official by Red Hat Enterprise Linux 7 Provide postgresql to update , If postgresql Service is running , Automatically restart after installing this update .
For more information on how to apply this update , see also :
https://access.redhat.com/articles/11258
View more vulnerability information And upgrade, please visit the official website :
https://access.redhat.com/security/security-updates/#/security-advisories
边栏推荐
- Shell process control - 39. Special process control statements
- 用户分析-AARRR模型(海盗模型)
- Leetcode: hash table 04 (sum of two numbers)
- 杰理之播 MP3 提示音功能【篇】
- [QT] Chapter 3 and 4: window components and layout management
- Basic knowledge of penetration test
- 凸优化笔记
- 重磅:国产IDE发布,由阿里研发,完全开源!(高性能+高定制性)
- Une fois que le port série de Jerry est réglé, le Code aléatoire est imprimé, et le cristal interne n'est pas étalonné [chapitre]
- Halcon knowledge: contour operator on region (1)
猜你喜欢
![[noi 2014] 15. Syndrome de difficulté à se lever [binaire]](/img/3a/12e9b2566d3ca3330a3cc6c5eaf135.png)
[noi 2014] 15. Syndrome de difficulté à se lever [binaire]

南芯半导体冲刺科创板:年营收9.8亿 顺为红杉小米OPPO是股东

Leetcode question brushing: hash table 05 (adding four numbers II)

js25题目
![【NOI2014】15. Difficult to get up syndrome [binary]](/img/3a/12e9b2566d3ca3330a3cc6c5eaf135.png)
【NOI2014】15. Difficult to get up syndrome [binary]

vPROM笔记

外卖江湖格局将变,美团“大哥”不好当

Shell process control - 39. Special process control statements

8、AI医生案例

凸优化笔记
随机推荐
【翻译】一种减小运动伪影的新方法基于AS-LMS自适应滤波器的PPG信号
Js25 topic
STM32(八)------- PWM输出
基于QT实现的图形学绘制系统 文档+项目源码及可执行EXE文件+系统使用说明书
[QT] multiple choice questions
Jerry's adding timer interrupt [chapter]
QT实现基于规则的机器翻译系统 课程论文+任务书+项目源码
Know Chuangyu: content oriented, ai+ artificial empowerment
Graffiti intelligence passed the hearing: Tencent is an important shareholder planning to return to Hong Kong for listing
Jerry's dynamic switching vcomo modulation method [chapter]
Une fois que le port série de Jerry est réglé, le Code aléatoire est imprimé, et le cristal interne n'est pas étalonné [chapitre]
产品反馈机制
Take out Jianghu will change, and meituan "big brother" is hard to be
Task management of embedded development foundation (thread management)
Sany Heavy energy technology innovation board listed: annual revenue of RMB 10.2 billion and market value of RMB 47 billion
MySQL -- classic interview questions
Docker搭建redis集群
重磅:国产IDE发布,由阿里研发,完全开源!(高性能+高定制性)
How far is the rise of cloud native industry applications from "available" to "easy to use"?
杰理之串口通信 串口接收 IO 需要设置数字功能【篇】