Количество 31
Количество 31
CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
CVE-2023-5869
Postgresql: buffer overrun from integer overflow in array modification
CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database user ...
RLSA-2023:7790
Important: postgresql:10 security update
GHSA-9625-p7pg-3cxg
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
ELSA-2023-7790
ELSA-2023-7790: postgresql:10 security update (IMPORTANT)
ELSA-2023-7783
ELSA-2023-7783: postgresql security update (IMPORTANT)
BDU:2023-07840
Уязвимость функций array_append, array_prepend, array_subscript_handler системы управления базами данных PostgreSQL, связанная с целочисленным переполнением при модификации массивов, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2024:0106-1
Security update for postgresql, postgresql15, postgresql16
SUSE-SU-2023:4495-1
Security update for postgresql, postgresql15, postgresql16
SUSE-SU-2023:4479-1
Security update for postgresql14
SUSE-SU-2023:4455-1
Security update for postgresql13
SUSE-SU-2023:4454-1
Security update for postgresql12
SUSE-SU-2023:4434-1
Security update for postgresql13
SUSE-SU-2023:4433-1
Security update for postgresql12
SUSE-SU-2023:4425-1
Security update for postgresql, postgresql15, postgresql16
SUSE-SU-2023:4418-1
Security update for postgresql14
RLSA-2023:7714
Important: postgresql:12 security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
CVE-2023-5869 Postgresql: buffer overrun from integer overflow in array modification | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database user ... | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
RLSA-2023:7790 Important: postgresql:10 security update | 2% Низкий | почти 2 года назад | ||
GHSA-9625-p7pg-3cxg A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
ELSA-2023-7790 ELSA-2023-7790: postgresql:10 security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-7783 ELSA-2023-7783: postgresql security update (IMPORTANT) | около 2 лет назад | |||
BDU:2023-07840 Уязвимость функций array_append, array_prepend, array_subscript_handler системы управления базами данных PostgreSQL, связанная с целочисленным переполнением при модификации массивов, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 2% Низкий | около 2 лет назад | |
SUSE-SU-2024:0106-1 Security update for postgresql, postgresql15, postgresql16 | почти 2 года назад | |||
SUSE-SU-2023:4495-1 Security update for postgresql, postgresql15, postgresql16 | около 2 лет назад | |||
SUSE-SU-2023:4479-1 Security update for postgresql14 | около 2 лет назад | |||
SUSE-SU-2023:4455-1 Security update for postgresql13 | около 2 лет назад | |||
SUSE-SU-2023:4454-1 Security update for postgresql12 | около 2 лет назад | |||
SUSE-SU-2023:4434-1 Security update for postgresql13 | около 2 лет назад | |||
SUSE-SU-2023:4433-1 Security update for postgresql12 | около 2 лет назад | |||
SUSE-SU-2023:4425-1 Security update for postgresql, postgresql15, postgresql16 | около 2 лет назад | |||
SUSE-SU-2023:4418-1 Security update for postgresql14 | около 2 лет назад | |||
RLSA-2023:7714 Important: postgresql:12 security update | почти 2 года назад |
Уязвимостей на страницу