PostgreSQL path_add() Buffer Overrun Vulnerability Solution:
The vendor has addressed this issue in the CVS repository.
Conectiva Linux has fixes available. Further information is available in the referenced advisory (CLA-2002:524).
Debian has released an advisory with fixes. See the attached advisory (DSA 165-1) for details on obtaining fixes.
Red Hat has released advisories (RHSA-2003:001-16 and RHSA-2003:010-10) which address this and other issues. Please see the attached advisories for details on obtaining and applying fixes.
Mandrake has made fixes available. See referenced advisory MDKSA-2002:062-1 for additional details.
Trustix Secure Linux has released an advisory (TSLSA-2003-0004) which addresses this and other PostgreSQL issues. Users are advised to upgrade as soon as possible.
WireX has released advisory IMNX-2003-7+-005-01 to address this issue.
PostgreSQL PostgreSQL 6.5.3
PostgreSQL PostgreSQL 7.0.2
PostgreSQL PostgreSQL 7.0.3
PostgreSQL PostgreSQL 7.1.3
PostgreSQL PostgreSQL 7.2
PostgreSQL PostgreSQL 7.2.1
PostgreSQL PostgreSQL 7.2.2