PostgreSQL security updates next week

The majority of PHP websites I’ve encountered use MySQL for data storage. However, it’s not the only option, and sometimes I’ve come across people using the technically superior but seemingly less popular PostgreSQL. If you fall into the latter group, you should be aware that on Thursday 4th April (less than a week from now) there will be a security update for all supported versions which includes a fix for a ‘high-exposure security vulnerability’.

There is no indication of what the vulnerability relates to, and the PostgreSQL team have taken the slightly unusual step of keeping the commits which fix the vulnerability private until the release is available.

You may also want to keep a close eye on your database logs for the next few days – not that you shouldn’t be doing this all the time – just in case someone manages to discover the vulnerability and publish an exploit before the security release is ready.

Comments

No comments yet. Why don’t you start the discussion?

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.