Ubuntu Security Notice 942-1 – It was discovered that the Safe.pm module as used by PostgreSQL did not properly restrict PL/perl procedures. If PostgreSQL was configured to use Perl stored procedures, a remote authenticated attacker could exploit this to execute arbitrary Perl code. It was discovered that PostgreSQL did not properly check permissions to restrict PL/Tcl procedures. If PostgreSQL was configured to use Tcl stored procedures, a remote authenticated attacker could exploit this to execute arbitrary Tcl code.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/89811/USN-942-1.txt
Source: https://packetstormsecurity.com/files/89811/Ubuntu-Security-Notice-942-1.html

