PostgreSQL: Multiple vulnerabilities Multiple vulnerabilities have been found in PostgreSQL, the worst of which could result in execution of arbitrary code or privilege escalation. postgresql 2015-07-18 2017-01-03 539018 550172 remote 9.0.21 9.1.17 9.2.12 9.3.8 9.4.3 9.0.22 9.0.23 9.0.24 9.1.18 9.1.19 9.1.20 9.2.13 9.2.14 9.2.15 9.3.9 9.3.10 9.3.11 9.3.12 9.3.14 9.3.15 9.4.3

PostgreSQL is an open source object-relational database management system.

Multiple vulnerabilities have been discovered in PostgreSQL. Please review the CVE identifiers referenced below for details.

A remote attacker could possibly execute arbitrary code with the privileges of the process, cause a Denial of Service condition or escalate privileges.

There is no known workaround at this time.

All PostgreSQL 9.0.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/postgresql-9.0.21"

All PostgreSQL 9.1.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/postgresql-9.1.17"

All PostgreSQL 9.2.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/postgresql-9.2.12"

All PostgreSQL 9.3.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/postgresql-9.3.8"

All PostgreSQL 9.4.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/postgresql-9.4.3"
CVE-2014-8161 CVE-2015-0241 CVE-2015-0242 CVE-2015-0243 CVE-2015-0244 CVE-2015-3165 CVE-2015-3166 CVE-2015-3167 BlueKnight Zlogene