Логотип exploitDog
bind:"CVE-2015-3166" OR bind:"CVE-2015-3165" OR bind:"CVE-2015-3167"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-3166" OR bind:"CVE-2015-3165" OR bind:"CVE-2015-3167"

Количество 21

Количество 21

suse-cvrf логотип

SUSE-SU-2015:1264-1

почти 10 лет назад

Security update for postgresql93

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1091-1

около 10 лет назад

Security update for postgresql91

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1194

почти 10 лет назад

ELSA-2015-1194: postgresql security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2015-3166

больше 5 лет назад

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2015-3166

около 10 лет назад

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2015-3166

больше 5 лет назад

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2015-3166

больше 5 лет назад

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-65w5-rcgr-gxgj

около 3 лет назад

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

EPSS: Низкий
ubuntu логотип

CVE-2015-3167

больше 5 лет назад

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2015-3167

около 10 лет назад

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2015-3167

больше 5 лет назад

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2015-3167

больше 5 лет назад

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2 ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2015-3165

около 10 лет назад

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-3165

около 10 лет назад

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2015-3165

около 10 лет назад

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2015-3165

около 10 лет назад

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9. ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-xj65-3378-xxg3

около 3 лет назад

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-qw8w-35hc-552q

около 3 лет назад

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

EPSS: Низкий
fstec логотип

BDU:2015-10483

около 10 лет назад

Уязвимость операционной системы Debian GNU\Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
EPSS: Низкий
fstec логотип

BDU:2015-10482

около 10 лет назад

Уязвимость операционной системы Ubuntu, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2015:1264-1

Security update for postgresql93

почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1091-1

Security update for postgresql91

около 10 лет назад
oracle-oval логотип
ELSA-2015-1194

ELSA-2015-1194: postgresql security update (MODERATE)

почти 10 лет назад
ubuntu логотип
CVE-2015-3166

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS3: 9.8
5%
Низкий
больше 5 лет назад
redhat логотип
CVE-2015-3166

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS2: 4
5%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-3166

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

CVSS3: 9.8
5%
Низкий
больше 5 лет назад
debian логотип
CVE-2015-3166

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before ...

CVSS3: 9.8
5%
Низкий
больше 5 лет назад
github логотип
GHSA-65w5-rcgr-gxgj

The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via unknown vectors, as demonstrated by an out-of-memory error.

5%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2015-3167

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
3%
Низкий
больше 5 лет назад
redhat логотип
CVE-2015-3167

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS2: 2.6
3%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-3167

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
3%
Низкий
больше 5 лет назад
debian логотип
CVE-2015-3167

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2 ...

CVSS3: 7.5
3%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2015-3165

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 4.3
7%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-3165

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 5
7%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-3165

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

CVSS2: 4.3
7%
Низкий
около 10 лет назад
debian логотип
CVE-2015-3165

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9. ...

CVSS2: 4.3
7%
Низкий
около 10 лет назад
github логотип
GHSA-xj65-3378-xxg3

contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 uses different error responses when an incorrect key is used, which makes it easier for attackers to obtain the key via a brute force attack.

CVSS3: 7.5
3%
Низкий
около 3 лет назад
github логотип
GHSA-qw8w-35hc-552q

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

7%
Низкий
около 3 лет назад
fstec логотип
BDU:2015-10483

Уязвимость операционной системы Debian GNU\Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
7%
Низкий
около 10 лет назад
fstec логотип
BDU:2015-10482

Уязвимость операционной системы Ubuntu, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
7%
Низкий
около 10 лет назад

Уязвимостей на страницу