Impact of CVE-2014-2669

From: "HEARNE, TIMOTHY S" <th1618(at)att(dot)com>
To: "pgadmin-support(at)postgresql(dot)org" <pgadmin-support(at)postgresql(dot)org>
Subject: Impact of CVE-2014-2669
Date: 2014-06-25 16:50:37
Message-ID: 00CF4A25E32E204B8968E067CE2BB0D9020C2F98@CAFRFD1MSGUSRJB.ITServices.sbc.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgadmin-support

We received notice of the following :
advisory:
31864 postgresql92-postgresql security update
http://www.securityfocus.com/advisories/31864

Web Page:Bug 1082154 - (CVE-2014-2669) CVE-2014-2669 postgresql: multiple integer overflo
https://bugzilla.redhat.com/show_bug.cgi?id=1082154

From what I can tell in reading it, it impacts the database engine not the client tools such as pgAdmin III. I have the latest version installed on my PC, 1.18.1, yet my company is requesting me to update or remove the tool. As this is the current release, this is obviously not possible.

Is pgAdmin III version 1.18.1 impacted by this threat?

If release 1.18.1 is impacted, is there an estimate as to when a solution will be released?

Thank you,

Tim Hearne

Responses

Browse pgadmin-support by date

  From Date Subject
Next Message Dave Page 2014-06-25 17:35:49 Re: Impact of CVE-2014-2669
Previous Message Andreas 2014-06-25 12:38:15 How to set option for search & replace