1
PublicDateAtUSN: 2015-02-06
2
Candidate: CVE-2014-8161
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8161
6
https://usn.ubuntu.com/usn/usn-2499-1
8
Some server error messages show the values of columns that violate
9
a constraint, such as a unique constraint. If the user does not have
10
SELECT privilege on all columns of the table, this could mean exposing
11
values that the user should not be able to see.
15
https://bugs.launchpad.net/ubuntu/+source/postgresql-9.4/+bug/1418928
17
Discovered-by: Stephen Frost
20
Patches_postgresql-9.1:
21
upstream_postgresql-9.1: released (9.1.11-2)
22
lucid_postgresql-9.1: DNE
23
precise_postgresql-9.1: released (9.1.15-0ubuntu0.12.04)
24
precise/esm_postgresql-9.1: released (9.1.15-0ubuntu0.12.04)
25
trusty_postgresql-9.1: released (9.1.15-0ubuntu0.14.04)
26
utopic_postgresql-9.1: DNE
27
vivid_postgresql-9.1: DNE
28
vivid/stable-phone-overlay_postgresql-9.1: DNE
29
vivid/ubuntu-core_postgresql-9.1: DNE
30
wily_postgresql-9.1: DNE
31
xenial_postgresql-9.1: DNE
32
yakkety_postgresql-9.1: DNE
33
zesty_postgresql-9.1: DNE
34
devel_postgresql-9.1: DNE
36
Patches_postgresql-9.3:
37
upstream_postgresql-9.3: released (9.3.6)
38
lucid_postgresql-9.3: DNE
39
precise_postgresql-9.3: DNE
40
precise/esm_postgresql-9.3: DNE
41
trusty_postgresql-9.3: released (9.3.6-0ubuntu0.14.04)
42
utopic_postgresql-9.3: DNE
43
vivid_postgresql-9.3: DNE
44
vivid/stable-phone-overlay_postgresql-9.3: DNE
45
vivid/ubuntu-core_postgresql-9.3: DNE
46
wily_postgresql-9.3: DNE
47
xenial_postgresql-9.3: DNE
48
yakkety_postgresql-9.3: DNE
49
zesty_postgresql-9.3: DNE
50
devel_postgresql-9.3: DNE
52
Patches_postgresql-9.4:
53
upstream_postgresql-9.4: released (9.4.1-1)
54
lucid_postgresql-9.4: DNE
55
precise_postgresql-9.4: DNE
56
precise/esm_postgresql-9.4: DNE
57
trusty_postgresql-9.4: DNE
58
utopic_postgresql-9.4: released (9.4.1-0ubuntu0.14.10)
59
vivid_postgresql-9.4: not-affected (9.4.1-1)
60
vivid/stable-phone-overlay_postgresql-9.4: DNE
61
vivid/ubuntu-core_postgresql-9.4: DNE
62
wily_postgresql-9.4: not-affected (9.4.1-1)
63
xenial_postgresql-9.4: DNE
64
yakkety_postgresql-9.4: DNE
65
zesty_postgresql-9.4: DNE
66
devel_postgresql-9.4: DNE
68
Patches_postgresql-8.4:
69
upstream_postgresql-8.4: ignored (reached end-of-life)
70
lucid_postgresql-8.4: released (8.4.22-0ubuntu0.10.04.1)
71
precise_postgresql-8.4: ignored (reached end-of-life)
72
precise/esm_postgresql-8.4: DNE (precise was needed)
73
trusty_postgresql-8.4: DNE
74
utopic_postgresql-8.4: DNE
75
vivid_postgresql-8.4: DNE
76
vivid/stable-phone-overlay_postgresql-8.4: DNE
77
vivid/ubuntu-core_postgresql-8.4: DNE
78
wily_postgresql-8.4: DNE
79
xenial_postgresql-8.4: DNE
80
yakkety_postgresql-8.4: DNE
81
zesty_postgresql-8.4: DNE
82
devel_postgresql-8.4: DNE