Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

fstec логотип

BDU:2026-06728

3 месяца назад

Уязвимость функции strlcat() программного обеспечения для пула соединения в PostgreSQL PgBouncer, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 8.1
EPSS: Низкий
redos логотип

ROS-20260714-73-0050

18 дней назад

Уязвимость pgbouncer

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2026-6665

3 месяца назад

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-6665

3 месяца назад

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2026-6665

3 месяца назад

PgBouncer buffer overflow in SCRAM

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2026-6665

3 месяца назад

The SCRAM code in PgBouncer before 1.25.2 did not check the return val ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-mhmx-mjv6-w337

3 месяца назад

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-06728

Уязвимость функции strlcat() программного обеспечения для пула соединения в PostgreSQL PgBouncer, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 8.1
0%
Низкий
3 месяца назад
redos логотип
ROS-20260714-73-0050

Уязвимость pgbouncer

CVSS3: 8.1
0%
Низкий
18 дней назад
ubuntu логотип
CVE-2026-6665

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6665

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-6665

PgBouncer buffer overflow in SCRAM

CVSS3: 8.1
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6665

The SCRAM code in PgBouncer before 1.25.2 did not check the return val ...

CVSS3: 8.1
0%
Низкий
3 месяца назад
github логотип
GHSA-mhmx-mjv6-w337

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

CVSS3: 8.1
0%
Низкий
3 месяца назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.