A vulnerability in crypt() function in pgCrypto extension was found. Certain short salts can crash the backend or disclose a few bytes of backend memory. Upstream patch: http://git.postgresql.org/gitweb/?p=postgresql.git;a=commit;h=1d812c8b059d0b9b1fba4a459c9876de0f6259b6 External reference: http://www.postgresql.org/about/news/1615/
Created mingw-postgresql tracking bugs for this issue: Affects: fedora-all [bug 1270315]
Created postgresql tracking bugs for this issue: Affects: fedora-all [bug 1270314]
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2015:2081 https://rhn.redhat.com/errata/RHSA-2015-2081.html
This issue has been addressed in the following products: Red Hat Software Collections for Red Hat Enterprise Linux 7.1 EUS Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS Red Hat Software Collections for Red Hat Enterprise Linux 7 Red Hat Software Collections for Red Hat Enterprise Linux 6 Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUS Via RHSA-2015:2077 https://rhn.redhat.com/errata/RHSA-2015-2077.html
This issue has been addressed in the following products: Red Hat Software Collections for Red Hat Enterprise Linux 7.1 EUS Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS Red Hat Software Collections for Red Hat Enterprise Linux 7 Red Hat Software Collections for Red Hat Enterprise Linux 6 Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUS Via RHSA-2015:2083 https://rhn.redhat.com/errata/RHSA-2015-2083.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2015:2078 https://rhn.redhat.com/errata/RHSA-2015-2078.html