Percona Operator for PostgreSQL 2.3.1 has been released
Percona Operator for PostgreSQL 2.3.1 has been released on Tuesday, January 23, 2024.
Try it out using the Quickstart guide.
This release provides a number of bug fixes, including fixes for the following vulnerabilities in PostgreSQL, pgBackRest, and pgBouncer images used by the Operator:
- OpenSSH could cause remote code execution by ssh-agent if a user establishes an SSH connection to a compromised or malicious SSH server and has agent forwarding enabled (CVE-2023-38408). This vulnerability affects pgBackRest and PostgreSQL images.
- The c-ares library could cause a Denial of Service with 0-byte UDP payload (CVE-2023-32067). This vulnerability affects pgBouncer image.
Learn more in Percona Operator for PostgreSQL 2.3.1 release notes.