Количество 8
Количество 8
GHSA-2pm8-9426-243p
Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.
CVE-2026-6470
Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.
CVE-2026-6470
Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected.
CVE-2026-6470
PostgreSQL fails to check type USAGE privilege
CVE-2026-6470
Missing authorization in PostgreSQL DDL commands allows an object crea ...
BDU:2026-11976
Уязвимость DDL-команд системы управления базами данных PostgreSQL, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2026:3793-1
Security update for postgresql14
SUSE-SU-2026:3794-1
Security update for postgresql16
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-2pm8-9426-243p Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected. | CVSS3: 4.3 | 0% Низкий | 19 дней назад | |
CVE-2026-6470 Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected. | CVSS3: 4.3 | 0% Низкий | 20 дней назад | |
CVE-2026-6470 Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but assigning a range subtype and referencing the type from an SQL expression did not. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected. | CVSS3: 4.3 | 0% Низкий | 20 дней назад | |
CVE-2026-6470 PostgreSQL fails to check type USAGE privilege | CVSS3: 4.3 | 0% Низкий | 10 дней назад | |
CVE-2026-6470 Missing authorization in PostgreSQL DDL commands allows an object crea ... | CVSS3: 4.3 | 0% Низкий | 20 дней назад | |
BDU:2026-11976 Уязвимость DDL-команд системы управления базами данных PostgreSQL, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 4.3 | 0% Низкий | 20 дней назад | |
SUSE-SU-2026:3793-1 Security update for postgresql14 | 8 дней назад | |||
SUSE-SU-2026:3794-1 Security update for postgresql16 | 8 дней назад |
Уязвимостей на страницу