{"id":42942,"date":"2020-02-17T14:41:56","date_gmt":"2020-02-17T11:41:56","guid":{"rendered":"https:\/\/prohoster.info\/blog\/blog_prohoster\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat"},"modified":"2020-02-17T14:41:56","modified_gmt":"2020-02-17T11:41:56","slug":"obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat","status":"publish","type":"post","link":"https:\/\/prohoster.info\/fr\/blog\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat","title":{"rendered":"Mise \u00e0 jour de PostgreSQL avec correction de vuln\u00e9rabilit\u00e9. Publication du syst\u00e8me de r\u00e9plication pgcat.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><noindex><a rel=\"nofollow\" href=\"https:\/\/www.postgresql.org\/about\/news\/2011\/\">De nouvelles<\/a><\/noindex> mises \u00e0 jour correctives pour toutes les branches prises en charge de PostgreSQL : <noindex><a rel=\"nofollow\" href=\"https:\/\/www.postgresql.org\/docs\/current\/static\/release-12-2.html\">12.2<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.postgresql.org\/docs\/current\/static\/release-11-7.html\">11.7<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.postgresql.org\/docs\/current\/static\/release-10-12.html\">10.12<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"http:\/\/www.postgresql.org\/docs\/current\/static\/release-9-6-17.html\">9.6.17<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"http:\/\/www.postgresql.org\/docs\/current\/static\/release-9-5-21.html\">9.5.21<\/a><\/noindex> et <noindex><a rel=\"nofollow\" href=\"http:\/\/www.postgresql.org\/docs\/current\/static\/release-9-4-26.html\">9.4.26<\/a><\/noindex>. La version 9.4.26 est la finale &#8212; pr\u00e9paration des mises \u00e0 jour pour la branche 9.4 <noindex><a rel=\"nofollow\" href=\"http:\/\/www.postgresql.org\/support\/versioning\/\">arr\u00eat\u00e9e<\/a><\/noindex>. Les mises \u00e0 jour pour la branche 9.5 seront en cours jusqu'\u00e0 f\u00e9vrier 2021, 9.6 &#8212; jusqu'\u00e0 novembre 2021, 10 &#8212; jusqu'\u00e0 novembre 2022, 11 &#8212; jusqu'\u00e0 novembre 2023, 12 &#8212; jusqu'\u00e0 novembre 2024. <\/p>\n<p>Les nouvelles versions corrigent 75 erreurs et \u00e9liminent une vuln\u00e9rabilit\u00e9.<br \/>\n(CVE-2020-1720), caus\u00e9e par l'absence de v\u00e9rification d'autorisation lors de l'ex\u00e9cution de la commande &#171;ALTER &#8230; DEPENDS ON EXTENSION&#187;. Dans certaines circonstances, la vuln\u00e9rabilit\u00e9 permet \u00e0 un utilisateur non privil\u00e9gi\u00e9 de supprimer n'importe quelle fonction, proc\u00e9dure, vue mat\u00e9rialis\u00e9e, index ou d\u00e9clencheur. Une attaque est possible si l'administrateur a install\u00e9 une extension quelconque et que l'utilisateur peut ex\u00e9cuter la commande CREATE ou arriver \u00e0 convaincre le propri\u00e9taire de l'extension d'ex\u00e9cuter la commande DROP EXTENSION.<\/p>\n<p>Il convient \u00e9galement de noter l'arriv\u00e9e d'une nouvelle application. <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/kingluo\/pgcat\">pgcat<\/a><\/noindex>, permettant de r\u00e9pliquer des donn\u00e9es entre plusieurs serveurs PostgreSQL. Le programme prend en charge la r\u00e9plication logique via la diffusion et la lecture d'un flux de commandes SQL ex\u00e9cut\u00e9es sur le serveur principal, entra\u00eenant des modifications de donn\u00e9es. Le code est \u00e9crit en Go et <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/kingluo\/pgcat\">est distribu\u00e9<\/a><\/noindex> sous licence Apache 2.0. Les principales diff\u00e9rences avec le m\u00e9canisme de r\u00e9plication logique int\u00e9gr\u00e9 :<\/p>\n<ul>\n<li class=\"l\"> Prise en charge de tout type de tables cibles (vues, fdw (Foreign Data Wrapper), tables partitionn\u00e9es, tables distribu\u00e9es Citus);\n<li class=\"l\"> Possibilit\u00e9 de renommer les tables (r\u00e9plication d'une table \u00e0 une autre);\n<li class=\"l\"> Prise en charge de la r\u00e9plication bidirectionnelle en ne transmettant que les modifications locales en ignorant les r\u00e9plications externes;\n<li class=\"l\"> Syst\u00e8me de r\u00e9solution des conflits bas\u00e9 sur l'algorithme LWW (last-writer-win);\n<li class=\"l\"> Possibilit\u00e9 de conserver des informations sur l'\u00e9tat de la r\u00e9plication et les r\u00e9plications non appliqu\u00e9es dans une table distincte, qui peut \u00eatre utilis\u00e9e pour la r\u00e9cup\u00e9ration apr\u00e8s la reprise du n\u0153ud receveur temporairement indisponible.\n<\/ul>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Source : <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52370\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0421\u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u0432\u0441\u0435\u0445 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u043c\u044b\u0445 \u0432\u0435\u0442\u043e\u043a PostgreSQL: 12.2, 11.7, 10.12, 9.6.17, 9.5.21 \u0438 9.4.26. \u0412\u044b\u043f\u0443\u0441\u043a 9.4.26 \u044f\u0432\u043b\u044f\u0435\u0442\u0441\u044f \u0444\u0438\u043d\u0430\u043b\u044c\u043d\u044b\u043c &#8212; \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043a\u0430 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0439 \u0434\u043b\u044f \u0432\u0435\u0442\u043a\u0438 9.4 \u043f\u0440\u0435\u043a\u0440\u0430\u0449\u0435\u043d\u0430. \u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u0432\u0435\u0442\u043a\u0438 9.5 \u0431\u0443\u0434\u0443\u0442 \u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u0442\u044c\u0441\u044f \u0434\u043e \u0444\u0435\u0432\u0440\u0430\u043b\u044f 2021 \u0433., 9.6 &#8212; \u0434\u043e \u043d\u043e\u044f\u0431\u0440\u044f 2021 \u0433\u043e\u0434\u0430, 10 &#8212; \u0434\u043e \u043d\u043e\u044f\u0431\u0440\u044f 2022 \u0433\u043e\u0434\u0430, 11 &#8212; \u0434\u043e \u043d\u043e\u044f\u0431\u0440\u044f 2023 \u0433\u043e\u0434\u0430, 12 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-42942","post","type-post","status-publish","format-standard","hentry"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0421\u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u0432\u0441\u0435\u0445 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u043c\u044b\u0445 \u0432\u0435\u0442\u043e\u043a PostgreSQL:\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/fr\/blog\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"fr_FR\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0435 PostgreSQL \u0441 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0435\u043c \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438. \u0412\u044b\u043f\u0443\u0441\u043a \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0440\u0435\u043f\u043b\u0438\u043a\u0430\u0446\u0438\u0438 pgcat | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0421\u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u0432\u0441\u0435\u0445 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u043c\u044b\u0445 \u0432\u0435\u0442\u043e\u043a PostgreSQL:\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/fr\/blog\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-02-17T11:41:56+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-02-17T11:41:56+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Mise \u00e0 jour de PostgreSQL corrig\u00e9e avec une vuln\u00e9rabilit\u00e9. Sortie du syst\u00e8me de r\u00e9plication pgcat | ProHoster","description":"Des mises \u00e0 jour correctives ont \u00e9t\u00e9 form\u00e9es pour toutes les branches prises en charge de PostgreSQL :","canonical_url":"https:\/\/prohoster.info\/fr\/blog\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"fr_FR","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0435 PostgreSQL \u0441 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0435\u043c \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438. \u0412\u044b\u043f\u0443\u0441\u043a \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0440\u0435\u043f\u043b\u0438\u043a\u0430\u0446\u0438\u0438 pgcat | ProHoster","og:description":"\u0421\u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u0432\u0441\u0435\u0445 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u043c\u044b\u0445 \u0432\u0435\u0442\u043e\u043a PostgreSQL:","og:url":"https:\/\/prohoster.info\/fr\/blog\/obnovlenie-postgresql-s-ustraneniem-uyazvimosti-vypusk-sistemy-replikaczii-pgcat","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-02-17T11:41:56+00:00","article:modified_time":"2020-02-17T11:41:56+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"42942","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 23:51:33","updated":"2022-09-28 20:36:17","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts\/42942","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/comments?post=42942"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts\/42942\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/media?parent=42942"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/categories?post=42942"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/tags?post=42942"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}