Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-23222

Опубликовано: 02 мар. 2022
Источник: debian
EPSS Низкий

Описание

A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
postgresql-14fixed14.1-1package
postgresql-13unfixedpackage
postgresql-11removedpackage
postgresql-9.6removedpackage

Примечания

  • https://www.postgresql.org/about/news/postgresql-141-135-129-1114-1019-and-9624-released-2349/

  • https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=d83cdfdca9d918bbbd6bb209139b94c954da7228 (REL9_6_24)

EPSS

Процентиль: 55%
0.00328
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 3 лет назад

A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption.

CVSS3: 3.7
redhat
больше 3 лет назад

A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption.

CVSS3: 5.9
nvd
больше 3 лет назад

A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption.

CVSS3: 5.9
msrc
больше 3 лет назад

Описание отсутствует

rocky
около 3 лет назад

Low: libpq security update

EPSS

Процентиль: 55%
0.00328
Низкий