Stack-based buffer overflow vulnerability in PostgreSQL - CVE-2019-10164ID: oval:org.secpod.oval:def:57647 | Date: (C)2019-07-23 (M)2023-07-28 |
Class: VULNERABILITY | Family: unix |
PostgreSQL versions 10.x before 10.9 and versions 11.x before 11.4 are vulnerable to a stack-based buffer overflow. Any authenticated user can overflow a stack-based buffer by changing the user's own password to a purpose-crafted value. This often suffices to execute arbitrary code as the PostgreSQL operating system account.
Platform: |
CentOS 6 |
CentOS 7 |
Red Hat Enterprise Linux 6 |
Red Hat Enterprise Linux 7 |
Red Hat Enterprise Linux 8 |
Product: |
postgresql10 |
postgresql11 |