Количество 17
Количество 17

BDU:2019-04641
Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным

CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.
CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding ...

openSUSE-SU-2019:1668-1
Security update for postgresql96

openSUSE-SU-2019:1578-1
Security update for postgresql10

SUSE-SU-2019:1687-1
Security update for postgresql96

SUSE-SU-2019:1511-1
Security update for postgresql10
GHSA-5rxr-v694-cxfj
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

openSUSE-SU-2019:1773-1
Security update for postgresql10

SUSE-SU-2019:2012-1
Security update for postgresql10

SUSE-SU-2019:1810-1
Security update for postgresql10
ELSA-2020-3669
ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE)

openSUSE-SU-2020:1227-1
Security update for postgresql96, postgresql10 and postgresql12
ELSA-2020-5619-1
ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT)
ELSA-2021-9290
ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2019-04641 Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным | CVSS3: 4.3 | 0% Низкий | почти 6 лет назад |
![]() | CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | почти 6 лет назад |
![]() | CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 3.1 | 0% Низкий | около 6 лет назад |
![]() | CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | почти 6 лет назад |
CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding ... | CVSS3: 4.3 | 0% Низкий | почти 6 лет назад | |
![]() | openSUSE-SU-2019:1668-1 Security update for postgresql96 | 0% Низкий | почти 6 лет назад | |
![]() | openSUSE-SU-2019:1578-1 Security update for postgresql10 | 0% Низкий | около 6 лет назад | |
![]() | SUSE-SU-2019:1687-1 Security update for postgresql96 | 0% Низкий | почти 6 лет назад | |
![]() | SUSE-SU-2019:1511-1 Security update for postgresql10 | 0% Низкий | около 6 лет назад | |
GHSA-5rxr-v694-cxfj A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
![]() | openSUSE-SU-2019:1773-1 Security update for postgresql10 | почти 6 лет назад | ||
![]() | SUSE-SU-2019:2012-1 Security update for postgresql10 | почти 6 лет назад | ||
![]() | SUSE-SU-2019:1810-1 Security update for postgresql10 | почти 6 лет назад | ||
ELSA-2020-3669 ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE) | почти 5 лет назад | |||
![]() | openSUSE-SU-2020:1227-1 Security update for postgresql96, postgresql10 and postgresql12 | почти 5 лет назад | ||
ELSA-2020-5619-1 ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9290 ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT) | около 4 лет назад |
Уязвимостей на страницу