A issue has been discovered in the PostgreSQL database system, whichcould result in privilege escalation.
More info:
https://www.debian.org/security/2019/dsa-4492
Dominik Penner discovered that KConfig, the KDE configuration settingsframework, supported a feature to define shell command execution in.desktop files. If a user is provided with a malformed .desktop file(e.g. if its embedded into a downloaded archive and it gets opened ina file browser) arbitrary commands could get executed. This updateremoves this feature.
More info:
https://www.debian.org/security/2019/dsa-4494
Two security issues have been discovered in the PostgreSQL databasesystem, which could result in privilege escalation, denial of service ormemory disclosure.
More info:
https://www.debian.org/security/2019/dsa-4493