安全公告详情

NS-SA-2021-0143

2021-09-24 11:20:13

简介

important: postgresql-jdbc/freerdp security update

严重级别

important

主题

An update for postgresql-jdbc/freerdp is now available for NewStart CGSL MAIN 5.05/CGSL CORE 5.05.
NewStart Security has rated this update as having a security impact of important. A Common Vunlnerability Scoring System(CVSS)base score, which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.

详细描述

postgresql-jdbc: PostgreSQL is an advanced Object-Relational database management system. The postgresql-jdbc package includes the .jar files needed for Java programs to access a PostgreSQL database.
freerdp: This package provides debug information for package freerdp. Debug information is useful when developing applications that use this package or when debugging this package.


Security Fix(es):
postgresql-jdbc: A flaw was found in PostgreSQL JDBC in versions prior to 42.2.13. An XML External Entity (XXE) weakness was found in PostgreSQL JDBC. The highest threat from this vulnerability is to data confidentiality and system availability.(CVE-2020-13692)
postgresql-jdbc: bugfix
freerdp: A flaw was found in freerdp in versions between 1.0 and 2.0.0. An out-of-bounds memory write was found in the planar.c function which could allow an attacker to control data sent from the RDP server to the client. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-11521)
freerdp: An issue was found in freerdp's libfreerdp/crypto/crypto.c, in versions before 2.1.1, where buffer access with an incorrect length value, leads to an out-of-bounds write. This flaw allows a remote, unauthenticated, attacker running an RDP server, or a local attacker, using a specially crafted certificate, to cause an out-of-bounds write into client process memory, corrupting the integrity of the data used in the RSA encryption functionality, or causing a denial of service.(CVE-2020-13398)
freerdp: A flaw was found in FreeRDP between versions 1.0 and 2.0.0. An out-of-bounds memory write was found in the interleaved.c function which could allow an attacker to take over and control the RDP server, including data sent to the client. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-11524)
freerdp: A flaw was found in FreeRDP in versions between 1.0 and 2.0.0. An integer overflow was found in the region.c function which could allow an attacker the ability to control the RDP server as well as the data sent to the client. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-11523)
freerdp: bugfix


Solution:
For details on how to apply this update, which includes the changes described in this advisory, refer to:
http://security.gd-linux.com/how_to_apply_patch.html
Remember the build tag is 5.05.F10B3.

影响组件

  • postgresql-jdbc
  • freerdp

影响产品

  • CGSL MAIN 5.05
  • CGSL CORE 5.05

更新包

{"fix":[{"product":"CGSL MAIN 5.05","pkgs":[{"binary":["postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm","postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm"],"source":"postgresql-jdbc-9.2.1002-8.el7_8.src.rpm"},{"binary":["freerdp-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-debuginfo-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-devel-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-libs-2.0.0-4.rc4.el7_8.1.x86_64.rpm","libwinpr-2.0.0-4.rc4.el7_8.1.x86_64.rpm","libwinpr-devel-2.0.0-4.rc4.el7_8.1.x86_64.rpm"],"source":"freerdp-2.0.0-4.rc4.el7_8.1.src.rpm"}]},{"product":"CGSL CORE 5.05","pkgs":[{"binary":["postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm","postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm"],"source":"postgresql-jdbc-9.2.1002-8.el7_8.src.rpm"},{"binary":["freerdp-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-debuginfo-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-devel-2.0.0-4.rc4.el7_8.1.x86_64.rpm","freerdp-libs-2.0.0-4.rc4.el7_8.1.x86_64.rpm","libwinpr-2.0.0-4.rc4.el7_8.1.x86_64.rpm","libwinpr-devel-2.0.0-4.rc4.el7_8.1.x86_64.rpm"],"source":"freerdp-2.0.0-4.rc4.el7_8.1.src.rpm"}]}]}

CVE

参考