Логотип exploitDog
product: "postgresql"
Консоль
Логотип exploitDog

exploitDog

product: "postgresql"
PostgreSQL

PostgreSQLсвободная объектно-реляционная система управления базами данных.

Релизный цикл, информация об уязвимостях

Продукт: PostgreSQL
Вендор: PostgreSQL

График релизов

131415161720202021202220232024202520262027202820292030

Недавние уязвимости PostgreSQL

Количество 970

debian логотип

CVE-2014-2669

больше 11 лет назад

Multiple integer overflows in contrib/hstore/hstore_io.c in PostgreSQL ...

CVSS2: 6.5
EPSS: Низкий
nvd логотип

CVE-2014-0067

больше 11 лет назад

The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by leveraging access to this cluster.

CVSS2: 4.6
EPSS: Низкий
debian логотип

CVE-2014-0067

больше 11 лет назад

The "make check" command for the test suites in PostgreSQL 9.3.3 and e ...

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2014-0066

больше 11 лет назад

The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly check the return value of the crypt library function, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2014-0066

больше 11 лет назад

The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16 ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2014-0065

больше 11 лет назад

Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, a different vulnerability than CVE-2014-0063.

CVSS2: 6.5
EPSS: Низкий
debian логотип

CVE-2014-0065

больше 11 лет назад

Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9. ...

CVSS2: 6.5
EPSS: Низкий
nvd логотип

CVE-2014-0064

больше 11 лет назад

Multiple integer overflows in the path_in and other unspecified functions in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, which trigger a buffer overflow. NOTE: this identifier has been SPLIT due to different affected versions; use CVE-2014-2669 for the hstore vector.

CVSS2: 6.5
EPSS: Средний
debian логотип

CVE-2014-0064

больше 11 лет назад

Multiple integer overflows in the path_in and other unspecified functi ...

CVSS2: 6.5
EPSS: Средний
nvd логотип

CVE-2014-0063

больше 11 лет назад

Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via vectors related to an incorrect MAXDATELEN constant and datetime values involving (1) intervals, (2) timestamps, or (3) timezones, a different vulnerability than CVE-2014-0065.

CVSS2: 6.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2014-2669

Multiple integer overflows in contrib/hstore/hstore_io.c in PostgreSQL ...

CVSS2: 6.5
1%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0067

The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by leveraging access to this cluster.

CVSS2: 4.6
0%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-0067

The "make check" command for the test suites in PostgreSQL 9.3.3 and e ...

CVSS2: 4.6
0%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0066

The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly check the return value of the crypt library function, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors.

CVSS2: 4
2%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-0066

The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16 ...

CVSS2: 4
2%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0065

Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, a different vulnerability than CVE-2014-0063.

CVSS2: 6.5
7%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-0065

Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9. ...

CVSS2: 6.5
7%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0064

Multiple integer overflows in the path_in and other unspecified functions in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, which trigger a buffer overflow. NOTE: this identifier has been SPLIT due to different affected versions; use CVE-2014-2669 for the hstore vector.

CVSS2: 6.5
13%
Средний
больше 11 лет назад
debian логотип
CVE-2014-0064

Multiple integer overflows in the path_in and other unspecified functi ...

CVSS2: 6.5
13%
Средний
больше 11 лет назад
nvd логотип
CVE-2014-0063

Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via vectors related to an incorrect MAXDATELEN constant and datetime values involving (1) intervals, (2) timestamps, or (3) timezones, a different vulnerability than CVE-2014-0065.

CVSS2: 6.5
13%
Средний
больше 11 лет назад

Уязвимостей на страницу


Поделиться