Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7486

Опубликовано: 12 мая 2017
Источник: debian
EPSS Низкий

Описание

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
postgresql-9.6fixed9.6.3-1package
postgresql-9.4removedpackage
postgresql-9.1removedpackage
postgresql-9.1not-affectedjessiepackage
postgresql-8.4not-affectedpackage

Примечания

  • https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=c928addfccd7f9905472dddd94e9cd10bc3f6808

EPSS

Процентиль: 92%
0.08366
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 8 лет назад

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.

CVSS3: 6.3
redhat
около 8 лет назад

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.

CVSS3: 7.5
nvd
около 8 лет назад

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.

CVSS3: 7.5
github
около 3 лет назад

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.

CVSS3: 7.5
fstec
около 8 лет назад

Уязвимость компонента pg_user_mappings системы управления базами данных PostgreSQL, позволяющая нарушителю получить доступ к учетным данным стороннего сервера

EPSS

Процентиль: 92%
0.08366
Низкий