Hide Forgot
A typical CREATE USER MAPPING command persists a foreign password in an "option" of the user mapping. Contrary to its documentation and at variance with the information_schema.user_mapping_options view, the pg_user_mappings view discloses user mapping options to any user having USAGE privilege on the associated foreign server. If someone revokes the USAGE grant, an attacker having captured the password this way might use it to connect another way. An attacker may use the password to run arbitrary queries against the server or others accepting the same credentials, not just the limited queries one can issue via foreign tables. Affected versions: 8.4 - 9.6
Acknowledgments: Name: the PostgreSQL project Upstream: Andrew Wheelwright
Upstream patch : * Match pg_user_mappings limits to information_schema.user_mapping_options https://github.com/postgres/postgres/commit/3eefc51053f
External References: https://www.postgresql.org/about/news/1746/
Created mingw-postgresql tracking bugs for this issue: Affects: epel-7 [bug 1450116] Affects: fedora-all [bug 1450117] Created postgresql tracking bugs for this issue: Affects: fedora-all [bug 1450115]
This issue has been addressed in the following products: Red Hat Software Collections for Red Hat Enterprise Linux 6 Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUS Red Hat Software Collections for Red Hat Enterprise Linux 7 Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUS Via RHSA-2017:1677 https://access.redhat.com/errata/RHSA-2017:1677
This issue has been addressed in the following products: Red Hat Software Collections for Red Hat Enterprise Linux 6 Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUS Red Hat Software Collections for Red Hat Enterprise Linux 7 Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUS Via RHSA-2017:1678 https://access.redhat.com/errata/RHSA-2017:1678
This issue has been addressed in the following products: Red Hat Satellite 5.8 Red Hat Satellite 5.8 ELS Via RHSA-2017:1838 https://access.redhat.com/errata/RHSA-2017:1838
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2017:1983 https://access.redhat.com/errata/RHSA-2017:1983
This issue has been addressed in the following products: Red Hat Satellite 5.7 Via RHSA-2017:2425 https://access.redhat.com/errata/RHSA-2017:2425