Postgresql

Postgresql

166 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 12.62%
  • Published 31.03.2014 14:58:15
  • Last modified 12.04.2025 10:46:40

Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrar...

  • EPSS 12.67%
  • Published 31.03.2014 14:58:15
  • Last modified 12.04.2025 10:46:40

Multiple integer overflows in the path_in and other unspecified functions in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact an...

  • EPSS 6.85%
  • Published 31.03.2014 14:58:15
  • Last modified 12.04.2025 10:46:40

Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact and attack vectors, a different vulnerability than...

  • EPSS 1.91%
  • Published 31.03.2014 14:58:15
  • Last modified 12.04.2025 10:46:40

The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly check the return value of the crypt library function, which allows remote authenticated users to...

  • EPSS 0.1%
  • Published 31.03.2014 14:58:15
  • Last modified 12.04.2025 10:46:40

The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by le...

  • EPSS 0.92%
  • Published 31.03.2014 14:58:08
  • Last modified 12.04.2025 10:46:40

PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly enforce the ADMIN OPTION restriction, which allows remote authenticated members of a role to add or remove arbitrary user...

  • EPSS 87.53%
  • Published 04.04.2013 17:55:00
  • Last modified 11.04.2025 00:51:21

Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration setti...

  • EPSS 0.95%
  • Published 04.04.2013 17:55:00
  • Last modified 11.04.2025 00:51:21

PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated users to have an unspecified impact via vectors relat...

  • EPSS 0.22%
  • Published 04.04.2013 17:55:00
  • Last modified 11.04.2025 00:51:21

PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) pg_start_backup or (2) pg_stop_backup functions.

  • EPSS 0.6%
  • Published 04.04.2013 17:55:00
  • Last modified 11.04.2025 00:51:21

PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure temporary files with predictable filenames, which has unspecified impact and attack vectors related to "graphical...