RLSA-2024:1435 --- postgresql-jdbcID: oval:org.secpod.oval:def:4501550 | Date: (C)2024-04-04 (M)2024-04-25 |
Class: PATCH | Family: unix |
PostgreSQL is an advanced object-relational database management system. The postgresql-jdbc package includes the .jar files needed for Java programs to access a PostgreSQL database. Security Fix: * PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.