RE: CVE-2018-1058

From: Lizeth Solis Aramayo <lizeth(dot)solis(at)elfec(dot)bo>
To: Adrian Klaver <adrian(dot)klaver(at)aklaver(dot)com>, "pgsql-general(at)postgresql(dot)org" <pgsql-general(at)postgresql(dot)org>
Subject: RE: CVE-2018-1058
Date: 2019-10-17 13:46:42
Message-ID: 3C49F7CCD612624598582C9A70E6B18001C947A39F@ELFMEX01.elfec.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

Forgot a fourth option:

4) Use the 9.6.15 pg_restore to restore the 9.6.15 pg_dump to the 9.6.5 database.

I don't know how to do that. May you help me please

Is it just copy the pg_restore from one server to another?

-----Mensaje original-----
De: Adrian Klaver [mailto:adrian(dot)klaver(at)aklaver(dot)com]
Enviado el: miércoles, 16 de octubre de 2019 18:32
Para: Lizeth Solis Aramayo; pgsql-general(at)postgresql(dot)org
Asunto: Re: CVE-2018-1058

On 10/16/19 1:05 PM, Lizeth Solis Aramayo wrote:
> What commands did you use to dump the 9.6.15 version and restore to
> the
> 9.6.5 version?
>
> Pg_dump -p 5433 -U postgres -Fc -d dbkerp -n param > param.dump And
> Pg_restore -p 5432 -U postgres -d dbkerp param.dump
>
>
> Server with pg_dump is Linux red hat 7.6
>
> Server with pg_restore is linux red hat 6.5
>
>
> In both servers I have postgresql 9.6, but in pg_dump is 9.6.15, and in pg_restore is 9.6.5.
>
>
> The pg_dump is correct, everything goes ok., but when I do the
> pg_restore I gota n error : pg_restore: [archiver] unsupported
> version (1.13) in file header

Forgot a fourth option:

4) Use the 9.6.15 pg_restore to restore the 9.6.15 pg_dump to the 9.6.5 database.

>
>
> I searched solutions, and I found that I can apply a patch CVE-2018-1058, but I don¡t know how.
> How to download, and install, I dont find documents about it.
>
> he reason why you can't upgrade the 9.6.5 to 9.6.15? I dont know how.
>

--
Adrian Klaver
adrian(dot)klaver(at)aklaver(dot)com
____La información contenida en este mensaje esta dirigida en forma exclusiva para el uso personal y confidencial del o los destinatarios arriba nombrados. Si el lector de este mensaje no es el destinatario previsto o una persona responsable para su distribución al destinatario, se le notifica que ha recibido este correo por error y que la revisión, distribución, difusión o copia de este mensaje esta estrictamente prohibida. Si por error recibió esta comunicación, por favor notifiquenos inmediatamente y borre el mensaje original. ____The information contained in this message is intended only for the personal and confidential use of the recipient(s) named above. If the reader of this message is not the intended recipient or an agent responsible for delivering it to the intended recipient, you are hereby notified that you have received this document in error and that any review, dissemination, distribution, or copying of this message is strictly prohibited. If you have received this communication in error, please notify us immediately, and delete the original message.

In response to

Responses

Browse pgsql-general by date

  From Date Subject
Next Message Ekaterina Amez 2019-10-17 13:48:09 Conflict between autovacuum and backup restoration
Previous Message Erwin Brandstetter 2019-10-17 13:13:24 Re: Can functions containing a CTE be PARALLEL SAFE?