RHSA-2024:1436: Important: postgresql-jdbc security update
Important: postgresql-jdbc security update
Other sources
PostgreSQL is an advanced object-relational database management system. The postgresql-jdbc package includes the .jar files needed for Java programs to access a PostgreSQL database.Security Fix(es): PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE (CVE-2024-1597) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1436?
The severity of RHSA-2024:1436 is classified as important.
How do I fix RHSA-2024:1436?
To fix RHSA-2024:1436, update the postgresql-jdbc package to version 42.2.28-1.el9_3.
What software is affected by RHSA-2024:1436?
RHSA-2024:1436 affects the postgresql-jdbc package across multiple Red Hat Enterprise Linux versions.
What vulnerabilities are addressed in RHSA-2024:1436?
RHSA-2024:1436 addresses security vulnerabilities in the PostgreSQL JDBC Driver.
Is there a need for immediate action for RHSA-2024:1436?
Yes, immediate action is recommended to mitigate potential security risks associated with RHSA-2024:1436.