Логотип exploitDog
product: "postgresql"
Консоль
Логотип exploitDog

exploitDog

product: "postgresql"
PostgreSQL

PostgreSQLсвободная объектно-реляционная система управления базами данных.

Релизный цикл, информация об уязвимостях

Продукт: PostgreSQL
Вендор: PostgreSQL

График релизов

131415161718202020212022202320242025202620272028202920302031

Недавние уязвимости PostgreSQL

Количество 974

suse-cvrf логотип

SUSE-SU-2022:3193-1

около 3 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2989-1

около 3 лет назад

Security update for postgresql14

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2988-1

около 3 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2987-1

около 3 лет назад

Security update for postgresql13

EPSS: Низкий
github логотип

GHSA-3f3c-74mp-823m

около 3 лет назад

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2022-1552

около 3 лет назад

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2022-1552

около 3 лет назад

A flaw was found in PostgreSQL. There is an issue with incomplete effo ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2022-1552

около 3 лет назад

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2946-1

около 3 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2914-1

около 3 лет назад

Security update for postgresql10

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
suse-cvrf логотип
SUSE-SU-2022:3193-1

Security update for postgresql12

1%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2989-1

Security update for postgresql14

1%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2988-1

Security update for postgresql12

1%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2987-1

Security update for postgresql13

1%
Низкий
около 3 лет назад
github логотип
GHSA-3f3c-74mp-823m

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
3%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-1552

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
3%
Низкий
около 3 лет назад
debian логотип
CVE-2022-1552

A flaw was found in PostgreSQL. There is an issue with incomplete effo ...

CVSS3: 8.8
3%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2022-1552

A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the process. This flaw allows an attacker with permission to create non-temporary objects in at least one schema to execute arbitrary SQL functions under a superuser identity.

CVSS3: 8.8
3%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2946-1

Security update for postgresql10

1%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2914-1

Security update for postgresql10

1%
Низкий
около 3 лет назад

Уязвимостей на страницу


Поделиться