CVE-2016-1255 | postgresql-common on Debian/Ubuntu pg_ctlcluster /var/log/postgresql link following (USN-3476-1 / Nessus ID 104496)
A vulnerability has been found in postgresql-common on Debian/Ubuntu and classified as problematic. This vulnerability affects unknown code of the file /var/log/postgresql of the component pg_ctlcluster. The manipulation leads to link following.
This vulnerability was named CVE-2016-1255. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.