Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-3065

Опубликовано: 11 апр. 2016
Источник: nvd
CVSS3: 9.1
CVSS2: 8.5
EPSS Низкий

Описание

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:postgresql:postgresql:9.5:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:9.5.1:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.0112
Низкий

9.1 Critical

CVSS3

8.5 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 9 лет назад

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page.

redhat
больше 9 лет назад

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page.

CVSS3: 9.1
debian
больше 9 лет назад

The (1) brin_page_type and (2) brin_metapage_info functions in the pag ...

CVSS3: 9.1
github
около 3 лет назад

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page.

EPSS

Процентиль: 77%
0.0112
Низкий

9.1 Critical

CVSS3

8.5 High

CVSS2

Дефекты

CWE-264