Collected every two hours from specialised publications — each link leads to the original article.
Cybersecurity researchers have unpacked a new malware strain dubbed PG_MEM that's designed to mine cryptocurrency after brute-forcing their way into PostgreSQL…
MySQL 8.0.39 Release notes: https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-38.html https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-39.html
PostgreSQL could execute arbitrary SQL functions as the superuser if it received a specially crafted SQL object.
Noah Misch discovered a race condition in the pg_dump tool included in PostgreSQL, which may result in privilege escalation. For the oldstable distribution (bu…
Noah Misch discovered a race condition in the pg_dump tool included in PostgreSQL, which may result in privilege escalation. For the stable distribution (bookw…
Multiple vulnerabilities have been discovered in Redis, the worst of which may lead to a denial of service or possible remote code execution.
Several security issues were fixed in MySQL.
MariaDB 10.5.25 & Galera 26.4.18 Release notes: https://mariadb.com/kb/en/mariadb-10-5-25-release-notes/
Several security issues were fixed in MySQL.
MariaDB 10.11.8 & Galera 26.4.18 Release notes: https://mariadb.com/kb/en/mariadb-10-11-7-release-notes/ https://mariadb.com/kb/en/mariadb-10-11-8-release-note…
PostgreSQL could be made to expose sensitive information.
PyMySQL could be vulnerable to SQL injection attacks.
Two critical security vulnerabilities were found in pgAdmin, the open-source administration tool for PostgreSQL . The vulnerabilities assigned CVE-2024-4216 an…
New mariadb packages are available for Slackware 15.0 and -current to fix a security issue.
Multiple vulnerabilities have been discovered in MariaDB, the worst fo which can lead to arbitrary execution of code.
In the PostgreSQL database server, a late privilege drop in the REFRESH MATERIALIZED VIEW CONCURRENTLY command could allow an attacker to trick a user with hig…
A recent attack campaign targeted publicly accessible Docker , Hadoop , Confluence, and Redis deployments. The attackers exploited misconfigurations and known …
PostgreSQL could be made to run arbitrary SQL.
A new malware dubbed ''Migo'' that is targeting Linux Redis servers to mine cryptocurrency via a cryptojacking attack has been discovered. This campaign employ…
A novel malware campaign has been observed targeting Redis servers for initial access with the ultimate goal of mining cryptocurrency on compromised Linux host…
The updated packages fix a security vulnerability: PostgreSQL non-owner REFRESH MATERIALIZED VIEW CONCURRENTLY executes arbitrary SQL. (CVE-2024-0985) Referenc…
Multiple security issues were discovered in Redis, a persistent key-value database, which could result in the execution of arbitrary code or ACL bypass.
The container suse/rmt-mariadb was updated. The following patches have been included in this update:
The container suse/rmt-mariadb-client was updated. The following patches have been included in this update: