Debian Security Advisory
DSA-5006-1 postgresql-11 -- security update
- Date Reported:
- 11 Nov 2021
- Affected Packages:
- postgresql-11
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2021-23214, CVE-2021-23222.
- More information:
-
Jacob Champion discovered two vulnerabilities in the PostgreSQL database system, which could result in man-in-the-middle attacks.
For the oldstable distribution (buster), these problems have been fixed in version 11.14-0+deb10u1.
We recommend that you upgrade your postgresql-11 packages.
For the detailed security status of postgresql-11 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/postgresql-11