Количество 27
Количество 27

BDU:2023-07840
Уязвимость функций array_append, array_prepend, array_subscript_handler системы управления базами данных PostgreSQL, связанная с целочисленным переполнением при модификации массивов, позволяющая нарушителю выполнить произвольный код

ROS-20240329-13
Множественные уязвимости postgresql14

ROS-20240329-14
Множественные уязвимости postgresql15

ROS-20240329-12
Множественные уязвимости postgresql13

ROS-20240329-11
Множественные уязвимости postgresql

CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.

CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.

CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.

CVE-2023-5869
CVE-2023-5869
A flaw was found in PostgreSQL that allows authenticated database user ...
GHSA-9625-p7pg-3cxg
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
ELSA-2023-7790
ELSA-2023-7790: postgresql:10 security update (IMPORTANT)
ELSA-2023-7783
ELSA-2023-7783: postgresql security update (IMPORTANT)

SUSE-SU-2024:0106-1
Security update for postgresql, postgresql15, postgresql16

SUSE-SU-2023:4495-1
Security update for postgresql, postgresql15, postgresql16

SUSE-SU-2023:4479-1
Security update for postgresql14

SUSE-SU-2023:4455-1
Security update for postgresql13

SUSE-SU-2023:4454-1
Security update for postgresql12

SUSE-SU-2023:4434-1
Security update for postgresql13

SUSE-SU-2023:4433-1
Security update for postgresql12
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2023-07840 Уязвимость функций array_append, array_prepend, array_subscript_handler системы управления базами данных PostgreSQL, связанная с целочисленным переполнением при модификации массивов, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 2% Низкий | больше 1 года назад |
![]() | ROS-20240329-13 Множественные уязвимости postgresql14 | CVSS3: 8.8 | около 1 года назад | |
![]() | ROS-20240329-14 Множественные уязвимости postgresql15 | CVSS3: 8.8 | около 1 года назад | |
![]() | ROS-20240329-12 Множественные уязвимости postgresql13 | CVSS3: 8.8 | около 1 года назад | |
![]() | ROS-20240329-11 Множественные уязвимости postgresql | CVSS3: 8.8 | около 1 года назад | |
![]() | CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | больше 1 года назад |
![]() | CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | больше 1 года назад |
![]() | CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | больше 1 года назад |
![]() | CVSS3: 8.8 | 2% Низкий | больше 1 года назад | |
CVE-2023-5869 A flaw was found in PostgreSQL that allows authenticated database user ... | CVSS3: 8.8 | 2% Низкий | больше 1 года назад | |
GHSA-9625-p7pg-3cxg A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory. | CVSS3: 8.8 | 2% Низкий | больше 1 года назад | |
ELSA-2023-7790 ELSA-2023-7790: postgresql:10 security update (IMPORTANT) | больше 1 года назад | |||
ELSA-2023-7783 ELSA-2023-7783: postgresql security update (IMPORTANT) | больше 1 года назад | |||
![]() | SUSE-SU-2024:0106-1 Security update for postgresql, postgresql15, postgresql16 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4495-1 Security update for postgresql, postgresql15, postgresql16 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4479-1 Security update for postgresql14 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4455-1 Security update for postgresql13 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4454-1 Security update for postgresql12 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4434-1 Security update for postgresql13 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4433-1 Security update for postgresql12 | больше 1 года назад |
Уязвимостей на страницу