Postgresql

Postgresql

168 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.61%
  • Veröffentlicht 09.12.2016 23:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might allow remote authenticated users with the CREATEDB or CREATEROLE role to gain superuser privileges via a (1) " (double quote), (2) \ ...

  • EPSS 3.4%
  • Veröffentlicht 09.12.2016 23:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow remote authenticated users to cause a denial of service (NULL pointer dereference and server crash), obtain sensitive memory informat...

  • EPSS 1.12%
  • Veröffentlicht 11.04.2016 15:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or ca...

  • EPSS 1.53%
  • Veröffentlicht 11.04.2016 15:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

  • EPSS 6.95%
  • Veröffentlicht 17.02.2016 15:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a ...

  • EPSS 1.95%
  • Veröffentlicht 17.02.2016 15:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privilege...

  • EPSS 11.24%
  • Veröffentlicht 26.10.2015 14:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (...

  • EPSS 8.21%
  • Veröffentlicht 26.10.2015 14:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via...

  • EPSS 8.53%
  • Veröffentlicht 28.05.2015 14:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the auth...

  • EPSS 0.94%
  • Veröffentlicht 31.03.2014 14:58:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer overflows in contrib/hstore/hstore_io.c in PostgreSQL 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact via vectors related to the (1) hst...