Advisories ยป MGASA-2015-0207

Updated postgis packages fix security vulnerabilities

Publication date: 11 May 2015
Modification date: 11 May 2015
Type: security
Affected Mageia releases : 4

Description

Updated postgis packages fix security vulnerability:

The PostGIS Raster support in PostGIS before 2.1.3  may give more privileges
to users than an administrator is willing to grant. These include reading
files from the filesystem and opening connections to network hosts.

The postgis package has been updated to version 2.1.7, fixing this issue and
several other bugs.

Please see the upstream release announcements and NEWS for more information.
                

References

SRPMS

4/core