<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2491067#M29148</link>
    <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/36623"&gt;@Filippo_Nicolussi_P&lt;/a&gt;&amp;nbsp; for your response.The steps outlined above appear to be generic and quite manual. Will Qlik officially support these steps? Is there any possibility that QPI will be upgraded soon to support unbundling of version 14.x? If not, should I open a support ticket to get confirmation on the steps mentioned?&lt;/P&gt;</description>
    <pubDate>Wed, 06 Nov 2024 10:27:57 GMT</pubDate>
    <dc:creator>fabdulazeez</dc:creator>
    <dc:date>2024-11-06T10:27:57Z</dc:date>
    <item>
      <title>CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2476313#M29141</link>
      <description>&lt;P&gt;Hallo,&lt;/P&gt;
&lt;P&gt;wie geht Qlik mit dieser Sicherheitslücke um?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.heise.de/news/Root-Sicherheitsluecke-bedroht-Datenbankmanagementsystem-PostgreSQL-9831918.html" target="_blank" rel="noopener"&gt;https://www.heise.de/news/Root-Sicherheitsluecke-bedroht-Datenbankmanagementsystem-PostgreSQL-9831918.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2025 16:21:29 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2476313#M29141</guid>
      <dc:creator>diloi</dc:creator>
      <dc:date>2025-01-29T16:21:29Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2476337#M29142</link>
      <description>&lt;P&gt;Hi&lt;BR /&gt;&lt;BR /&gt;The vulnerability is classified as high.&amp;nbsp;When will PostgreSQL 14.13 be supported?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Aug 2024 15:18:52 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2476337#M29142</guid>
      <dc:creator>Fipe</dc:creator>
      <dc:date>2024-08-14T15:18:52Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2482191#M29143</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/309609"&gt;@Fipe&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/309589"&gt;@diloi&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;At today all supported version of Qlik Sense "&lt;A href="https://help.qlik.com/en-US/sense-admin/November2022/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/Common/system-requirements.htm" target="_self"&gt;System requirements for Qlik Sense Enterprise&lt;/A&gt;&amp;nbsp;just select the version on the drop down select box on the left side" do support&amp;nbsp; 14.x versions; however it could be necessary to unbind your current Postgres as per article&amp;nbsp;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Upgrading-and-unbundling-the-Qlik-Sense-Repository-Database/ta-p/1934238" target="_self"&gt;Upgrading and unbundling the Qlik Sense Repository Database using the Qlik PostgreSQL Installer&lt;/A&gt;&amp;nbsp;first.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you are running on a standalone PostgreSQL just follow Postgres recommendation/guides.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Sep 2024 08:39:24 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2482191#M29143</guid>
      <dc:creator>Filippo_Nicolussi_P</dc:creator>
      <dc:date>2024-09-18T08:39:24Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2486129#M29144</link>
      <description>&lt;P&gt;Hi, I am facing the same issue.&lt;/P&gt;
&lt;P&gt;"&lt;SPAN&gt;do support&amp;nbsp; 14.x versions," Can we upgrade Postgres to 14.13 manually,&lt;/SPAN&gt;&amp;nbsp;and it will be supported?&lt;/P&gt;
&lt;P&gt;The QPI is just for 14.8.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Oct 2024 07:33:49 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2486129#M29144</guid>
      <dc:creator>JacovCohenQ</dc:creator>
      <dc:date>2024-10-09T07:33:49Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2486324#M29145</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Yes, it will be supported, but you'll need to externalize your database. So you will need to backup you repository database, install postgres manually, restore the backup, and reinstall qliksense using the new database.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Thu, 10 Oct 2024 06:53:03 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2486324#M29145</guid>
      <dc:creator>VBD</dc:creator>
      <dc:date>2024-10-10T06:53:03Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2488408#M29146</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/36623"&gt;@Filippo_Nicolussi_P&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have the February 2024 version, which includes PostgreSQL 14.8. Can we use QPI to unbundle PostgreSQL and then upgrade it to 14.13?&lt;/P&gt;
&lt;P&gt;QPI known limitation:&amp;nbsp;&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;&lt;STRONG&gt;Cannot migrate a 14.8 embedded&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;d&lt;/SPAN&gt;atabase to a standalone&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Oct 2024 12:10:40 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2488408#M29146</guid>
      <dc:creator>fabdulazeez</dc:creator>
      <dc:date>2024-10-22T12:10:40Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2491045#M29147</link>
      <description>&lt;P&gt;Exact&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/10066"&gt;@fabdulazeez&lt;/a&gt;&amp;nbsp;; and in such a scenario, a possible procedure is explained by&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/301958"&gt;@VBD&lt;/a&gt;&amp;nbsp;:&lt;/P&gt;
&lt;P&gt;"&lt;SPAN&gt;Yes, it will be supported, but you'll need to externalize your database. So you will need to backup your repository database, install Postgres manually, restore the backup, and reinstall qliksense using the new database."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Depending on your confidence you could :&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Stop all services on all nodes except the database and take backups of databases &lt;A href="https://help.qlik.com/en-US/sense-admin/February2024/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoW/Deploy_QSEoW/Backing-up-a-site.htm" target="_blank" rel="noopener"&gt;Backup a Qlik Sense Site&lt;/A&gt;.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Stop the database too after backup.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Use SC Windows command&amp;nbsp; &lt;A href="https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/cc754599(v=ws.11)" target="_self"&gt;Learn Microsoft SC.exe&lt;/A&gt;&amp;nbsp;&lt;A title="Microsoft Learn SC " href="https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/cc754599(v=ws.11)" target="_self"&gt;&amp;nbsp;&lt;/A&gt;to remove dependencies from the Embedded PostgreSQL and remove the "Qlik Sense Repository Database" service.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Install the PostgreSQL 14.13 customizing listening port 4432 to the default Qlik Sense port and start it.&lt;/P&gt;
&lt;P&gt;Create the required/used user role qliksenserepository and databases&amp;nbsp;&lt;A href="https://help.qlik.com/en-US/sense-admin/May2024/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoW/Deploy_QSEoW/Installing-configuring-postgresql.htm" target="_self"&gt;Install and configure PostgreSQL.&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Restore the databases.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Start central, verify, and proceed with other nodes.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 06 Nov 2024 09:40:39 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2491045#M29147</guid>
      <dc:creator>Filippo_Nicolussi_P</dc:creator>
      <dc:date>2024-11-06T09:40:39Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2491067#M29148</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/36623"&gt;@Filippo_Nicolussi_P&lt;/a&gt;&amp;nbsp; for your response.The steps outlined above appear to be generic and quite manual. Will Qlik officially support these steps? Is there any possibility that QPI will be upgraded soon to support unbundling of version 14.x? If not, should I open a support ticket to get confirmation on the steps mentioned?&lt;/P&gt;</description>
      <pubDate>Wed, 06 Nov 2024 10:27:57 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2491067#M29148</guid>
      <dc:creator>fabdulazeez</dc:creator>
      <dc:date>2024-11-06T10:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2024-7348 Root-Sicherheitslücke in PostgreSQL</title>
      <link>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2493203#M29149</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/10066"&gt;@fabdulazeez&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Sounds there will be a new version of the QPI that will provide missed capabilities.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;No need for a support ticket Just keep monitored for QPI updates.&amp;nbsp; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Nov 2024 11:04:54 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/CVE-2024-7348-Root-Sicherheitsl%C3%BCcke-in-PostgreSQL/m-p/2493203#M29149</guid>
      <dc:creator>Filippo_Nicolussi_P</dc:creator>
      <dc:date>2024-11-18T11:04:54Z</dc:date>
    </item>
  </channel>
</rss>

