This script is Copyright (C) 2012-2014 Tenable Network Security, Inc.
The remote SuSE 10 host is missing a security-related patch.
PostgreSQL was updated to the latest stable release 8.1.23, fixing
various bugs and security issues.
The following security issues have been fixed :
- This update fixes arbitrary read and write of files via
XSL functionality. (CVE-2012-3488)
- postgresql: denial of service (stack exhaustion) via
specially crafted SQL. (CVE-2012-2655)
- crypt_blowfish was mishandling 8 bit characters.
See also :
Apply ZYPP patch number 8311.
Risk factor :
Medium / CVSS Base Score : 5.0