4

CVE-2009-0922

Exploit

PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of service (stack consumption and crash) by triggering a failure in the conversion of a localized error message to a client-specified encoding, as demonstrated using mismatched encoding conversion requests.

Data is provided by the National Vulnerability Database (NVD)
PostgresqlPostgresql Version7.4.24
PostgresqlPostgresql Version8.0.20
PostgresqlPostgresql Version8.1.16
PostgresqlPostgresql Version8.2.12
PostgresqlPostgresql Version8.3.6
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 8.64% 0.916
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P