Debian Security Advisory

DLA-2105-1 postgresql-9.4 -- LTS security update

Date Reported:
17 Feb 2020
Affected Packages:
Security database references:
In Mitre's CVE dictionary: CVE-2020-1720.
More information:

Tom Lane discovered that ALTER ... DEPENDS ON EXTENSION sub commands in the PostgreSQL database did not perform authorisation checks.

For Debian 8 Jessie, this problem has been fixed in version 9.4.26-0+deb8u1.

We recommend that you upgrade your postgresql-9.4_9.4.26-0+deb8u1 packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: