ืขื“ื›ื•ืŸ PostgreSQL 11.3, 10.8, 9.6.13, 9.5.17 ื•-9.4.22

ื ื•ืฆืจ ืขื“ื›ื•ื ื™ื ืžืชืงื ื™ื ืขื‘ื•ืจ ื›ืœ ืกื ื™ืคื™ PostgreSQL ื”ื ืชืžื›ื™ื: 11.3, 10.8, 9.6.13, 9.5.17 ะธ 9.4.22, ืฉืžื›ื™ืœ ื—ืœืง ืžืชื™ืงื•ื ื™ ื‘ืื’ื™ื. ืฉื—ืจื•ืจ ืขื“ื›ื•ื ื™ื ืขื‘ื•ืจ ืกื ื™ืฃ 9.4 ื™ื—ื–ื™ืง ืžืขืžื“ ืขื“ ื“ืฆืžื‘ืจ 2019, 9.5 ืขื“ ื™ื ื•ืืจ 2021, 9.6 ืขื“ ืกืคื˜ืžื‘ืจ 2021, 10 ืขื“ ืื•ืงื˜ื•ื‘ืจ 2022, 11 ืขื“ ื ื•ื‘ืžื‘ืจ 2023.

ื”ื’ืจืกืื•ืช ื”ื—ื“ืฉื•ืช ืžืชืงื ื•ืช ื™ื•ืชืจ ืž-60 ื‘ืื’ื™ื ื•ืžื‘ื˜ืœื•ืช ืืจื‘ืข ื ืงื•ื“ื•ืช ืชื•ืจืคื”:

  • ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื” (CVE-2019-10127, CVE-2019-10128) ื”ืŸ ืกืคืฆื™ืคื™ื•ืช ืœืคืœื˜ืคื•ืจืžืช Windows ื•ืžื•ืคื™ืขื•ืช ื‘ืžืชืงื™ื ื™ื ืž-EnterpriseDB ื•-BigSQL, ืฉืœื ื”ื’ื“ื™ืจื• ื–ื›ื•ื™ื•ืช ื’ื™ืฉื” ืžืชืื™ืžื•ืช ืœืกืคืจื™ื™ืช ื”ื ืชื•ื ื™ื, ืžื” ืฉืืคืฉืจื• ืœื›ืœ ืžืฉืชืžืฉ Windows ื—ืกืจ ื”ืจืฉืื•ืช ืœื™ื–ื•ื ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืจืžืช ืฉื™ืจื•ืช PostgreSQL.
  • ื”ืคื’ื™ืขื•ืช ืฉืœ CVE-2019-10129 ืžื•ืคื™ืขื” ื‘-PostgreSQL 11 ื•ืžืืคืฉืจืช ืœืžืฉืชืžืฉ ืœืงืจื•ื ืื–ื•ืจื™ ื–ื™ื›ืจื•ืŸ ืฉืจื™ืจื•ืชื™ื™ื ืฉืœ ืชื”ืœื™ืš ืฉืจืช ืขืœ ื™ื“ื™ ืฉืœื™ื—ืช ื‘ืงืฉืช INSERT ื‘ืขืœืช ืžื‘ื ื” ืžื™ื•ื—ื“ ืœื˜ื‘ืœื” ืžื—ื•ืœืงืช.
  • ืคื’ื™ืขื•ืช CVE-2019-10130 ืžืืคืฉืจืช ืœืš ืœืงืจื•ื ืืช ื”ืขืจื›ื™ื ืฉืœ ืจืฉื•ืžื•ืช ืฉื”ื’ื™ืฉื” ืืœื™ื”ืŸ ืžื•ื’ื‘ืœืช.

ื‘ืื’ื™ื ืฉืชื•ืงื ื• ื›ื•ืœืœื™ื ืฉื—ื™ืชื•ืช ืกืคืจื™ื™ื” ื‘ืขืช ื‘ื™ืฆื•ืข "ALTER TABLE" ืขืœ ื˜ื‘ืœื” ืžื—ื•ืœืงืช, ืงืจื™ืกืช ืฉืจืช ื›ืืฉืจ ืžืชืจื—ืฉืช ืฉื’ื™ืื” ื‘ืขืช ื ื™ืกื™ื•ืŸ ืœืฉืžื•ืจ ืืช ื”ืกืžืŸ ื‘ื™ืŸ ืคืขื•ืœื•ืช ื˜ืจื ื–ืงืฆื™ื•ืช, ื‘ืขื™ื•ืช ื‘ื™ืฆื•ืขื™ื ื‘ืขืช ื‘ื™ื˜ื•ืœ ืขืกืงืื•ืช ื”ืžืขืจื‘ื•ืช ืžืกืคืจ ืจื‘ ืฉืœ ื˜ื‘ืœืื•ืช, ื—ื•ืกืจ ืชืžื™ื›ื” ื‘- ื‘ื™ื˜ื•ื™ "CREATE TABLE IF NOT" ืงื™ื™ื .. AS EXECUTE ..", ื–ื™ื›ืจื•ืŸ ื“ื•ืœืฃ.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”