Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fr68-cm8v-7vv6

Опубликовано: 03 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

EPSS

Процентиль: 40%
0.00181
Низкий

3.7 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.7
ubuntu
больше 2 лет назад

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

CVSS3: 3.7
redhat
больше 2 лет назад

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

CVSS3: 3.7
nvd
больше 2 лет назад

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

CVSS3: 3.7
msrc
6 месяцев назад

Описание отсутствует

CVSS3: 3.7
debian
больше 2 лет назад

In PostgreSQL, a modified, unauthenticated server can send an untermin ...

EPSS

Процентиль: 40%
0.00181
Низкий

3.7 Low

CVSS3

Дефекты

CWE-200