4

CVE-2007-4772

Exploit
The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted regular expression.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
PostgresqlPostgresql Version >= 7.4 < 7.4.19
PostgresqlPostgresql Version >= 8.0 < 8.0.15
PostgresqlPostgresql Version >= 8.1 < 8.1.11
PostgresqlPostgresql Version >= 8.2 < 8.2.6
DebianDebian Linux Version3.1
CanonicalUbuntu Linux Version6.06 SwEditionlts
CanonicalUbuntu Linux Version6.10
CanonicalUbuntu Linux Version7.04
CanonicalUbuntu Linux Version7.10
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.28% 0.511
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://usn.ubuntu.com/568-1/
Third Party Advisory
http://securitytracker.com/id?1019157
Third Party Advisory
VDB Entry
http://www.securityfocus.com/bid/27163
Patch
Third Party Advisory
VDB Entry