Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-10208

Опубликовано: 08 авг. 2019
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5.x before 9.5.19, 9.6.x before 9.6.15, 10.x before 10.10 and 11.x before 11.5 where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL as the owner of the function.

A flaw was discovered in postgresql where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL as the owner of the function.

Отчет

Red Hat Virtualization Management Appliance included affected versions of postgresql, however no custom SECURITY DEFINER functions are declared so this vulnerability can not be exploited in the default configuration.

Меры по смягчению последствий

If your use case requires SECURITY DEFINER functions, please follow the advice below to write them safely so they do not rely on search_path and restrict the set of users which can access them. https://www.postgresql.org/docs/devel/sql-createfunction.html#SQL-CREATEFUNCTION-SECURITY

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Decision Manager 7postgresqlNot affected
Red Hat Enterprise Linux 5postgresqlOut of support scope
Red Hat Enterprise Linux 6postgresqlOut of support scope
Red Hat Enterprise Linux 8libpqNot affected
Red Hat Process Automation 7postgresqlNot affected
Red Hat Satellite 5rh-postgresql95-postgresqlOut of support scope
Red Hat Storage 3rhevm-dependenciesNot affected
Red Hat Virtualization 4rh-postgresql10-postgresqlWill not fix
Red Hat Virtualization 4rh-postgresql95-postgresqlOut of support scope
Red Hat Enterprise Linux 7postgresqlFixedRHSA-2021:151206.05.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-89
https://bugzilla.redhat.com/show_bug.cgi?id=1734416postgresql: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution

EPSS

Процентиль: 59%
0.00388
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5.x before 9.5.19, 9.6.x before 9.6.15, 10.x before 10.10 and 11.x before 11.5 where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL as the owner of the function.

CVSS3: 8.8
nvd
больше 5 лет назад

A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5.x before 9.5.19, 9.6.x before 9.6.15, 10.x before 10.10 and 11.x before 11.5 where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL as the owner of the function.

CVSS3: 8.8
debian
больше 5 лет назад

A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5. ...

suse-cvrf
почти 6 лет назад

Security update for postgresql10

suse-cvrf
больше 5 лет назад

Security update for postgresql10

EPSS

Процентиль: 59%
0.00388
Низкий

7.5 High

CVSS3