Количество 17
Количество 17
CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.
CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.
CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.
CVE-2019-10130
A vulnerability was found in PostgreSQL versions 11.x up to excluding ...
openSUSE-SU-2019:1668-1
Security update for postgresql96
openSUSE-SU-2019:1578-1
Security update for postgresql10
SUSE-SU-2019:1687-1
Security update for postgresql96
SUSE-SU-2019:1511-1
Security update for postgresql10
GHSA-5rxr-v694-cxfj
A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.
BDU:2019-04641
Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным
openSUSE-SU-2019:1773-1
Security update for postgresql10
SUSE-SU-2019:2012-1
Security update for postgresql10
SUSE-SU-2019:1810-1
Security update for postgresql10
ELSA-2020-3669
ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE)
openSUSE-SU-2020:1227-1
Security update for postgresql96, postgresql10 and postgresql12
ELSA-2020-5619-1
ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT)
ELSA-2021-9290
ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 3.1 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10130 A vulnerability was found in PostgreSQL versions 11.x up to excluding ... | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
openSUSE-SU-2019:1668-1 Security update for postgresql96 | 0% Низкий | больше 6 лет назад | ||
openSUSE-SU-2019:1578-1 Security update for postgresql10 | 0% Низкий | больше 6 лет назад | ||
SUSE-SU-2019:1687-1 Security update for postgresql96 | 0% Низкий | больше 6 лет назад | ||
SUSE-SU-2019:1511-1 Security update for postgresql10 | 0% Низкий | больше 6 лет назад | ||
GHSA-5rxr-v694-cxfj A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker. | CVSS3: 4.3 | 0% Низкий | больше 3 лет назад | |
BDU:2019-04641 Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
openSUSE-SU-2019:1773-1 Security update for postgresql10 | больше 6 лет назад | |||
SUSE-SU-2019:2012-1 Security update for postgresql10 | больше 6 лет назад | |||
SUSE-SU-2019:1810-1 Security update for postgresql10 | больше 6 лет назад | |||
ELSA-2020-3669 ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE) | около 5 лет назад | |||
openSUSE-SU-2020:1227-1 Security update for postgresql96, postgresql10 and postgresql12 | около 5 лет назад | |||
ELSA-2020-5619-1 ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT) | почти 5 лет назад | |||
ELSA-2021-9290 ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT) | больше 4 лет назад |
Уязвимостей на страницу