CVE-2014-0061
- EPSS 1.57%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The validator functions for the procedural languages (PLs) in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to gain privileges via a function that is (1...
CVE-2014-0062
- EPSS 0.66%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in the (1) CREATE INDEX and (2) unspecified ALTER TABLE commands in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allows remote authenticated users to create an unauthori...
CVE-2014-0063
- EPSS 9.7%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrar...
CVE-2014-0064
- EPSS 12.67%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple integer overflows in the path_in and other unspecified functions in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact an...
CVE-2014-0065
- EPSS 6.85%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, a different vulnerability than...
- EPSS 1.91%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly check the return value of the crypt library function, which allows remote authenticated users to...
CVE-2014-0067
- EPSS 0.1%
- Veröffentlicht 31.03.2014 14:58:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by le...
- EPSS 0.92%
- Veröffentlicht 31.03.2014 14:58:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly enforce the ADMIN OPTION restriction, which allows remote authenticated members of a role to add or remove arbitrary user...
CVE-2013-1899
- EPSS 71.64%
- Veröffentlicht 04.04.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration setti...
CVE-2013-1900
- EPSS 0.8%
- Veröffentlicht 04.04.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated users to have an unspecified impact via vectors relat...