Aw: Information to CVE-2022-42889

From: Karsten Hilbert <Karsten(dot)Hilbert(at)gmx(dot)net>
To: Cedric Aaron Towstyka <Cedric-Aaron(dot)Towstyka(at)barmenia(dot)de>
Cc: "pgsql-general(at)lists(dot)postgresql(dot)org" <pgsql-general(at)lists(dot)postgresql(dot)org>
Subject: Aw: Information to CVE-2022-42889
Date: 2022-11-08 11:33:39
Message-ID: trinity-b8a0fefe-4cc0-4049-818e-a3cb8180ca81-1667907219851@3c-app-gmx-bap70
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

> the german bureau for IT-Security "BSI" (Bundesamt für Sicherheit in der Informationstechnik) has issued a warning for CVE CVE-2022-42889 with the name commons-text. Insurance companies are obliged to analyse the installed software for vulnerabilities of this type.
As the Barmenia is using your product PostgreSQL Server it is necessary to obtain all information regarding any vulnerability against above CVE.
We kindly ask you to provide information if the above product is affected by the CVE and if yes, when a fix will be available.
 
> With the request for short-term feedback.

It might be prudent for Barmenia, a large insurance company, to consider
purchasing commercial support rather than requesting short-term feedback
from volunteers.

Other than that there's also excellent documentation and freely
inspectable source code.

Best regards,
Karsten

In response to

Browse pgsql-general by date

  From Date Subject
Next Message Ron 2022-11-08 13:02:09 Re: Feature suggestions for backup and replication
Previous Message Erik Wienhold 2022-11-08 11:27:33 Re: Information to CVE-2022-42889