Re: CVE-2007-(4769|4772|6067) affected versions

From: Magnus Hagander <magnus(at)hagander(dot)net>
To: Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us>
Cc: Tomas Hoger <thoger(at)redhat(dot)com>, security(at)postgresql(dot)org, pgsql-www(at)postgresql(dot)org
Subject: Re: CVE-2007-(4769|4772|6067) affected versions
Date: 2008-01-07 18:41:11
Message-ID: 47827247.1000104@hagander.net
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-www

Tom Lane wrote:
> Tomas Hoger <thoger(at)redhat(dot)com> writes:
>> Your security page states that 7.3 branch is affected by regular
>> expressions flaws announced publicly today. According to previous
>> investigations and communication with Tom Lane (tgl, CC-ed), that
>> version should not be affected, and 7.4 should be the first branch
>> affected.
>
> Yeah, that's just a communication error with the web team. Somebody
> please fix? The 6600 and 6601 issues affect 7.3, the other 3 don't.

My bad, fixed, will be on the next site update. We should probably have
said that in the announcement as well :(

//Magnus

In response to

Browse pgsql-www by date

  From Date Subject
Next Message Bruce Momjian 2008-01-07 20:58:53 Re: sf.net download page
Previous Message Tom Lane 2008-01-07 18:34:33 Re: CVE-2007-(4769|4772|6067) affected versions