[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.7] postgresql: Stack-based buffer overflow via setting a password (CVE-2019-10164)

ID: oval:org.secpod.oval:def:1801495Date: (C)2019-07-09   (M)2023-11-10
Class: PATCHFamily: unix




PostgreSQL versions 10.x before 10.9 and versions 11.x before 11.4 are vulnerable to a stack-based buffer overflow. Any authenticated user can overflow a stack-based buffer by changing the user"s own password to a purpose-crafted value. This often suffices to execute arbitrary code as the PostgreSQL operating system account.

Platform:
Alpine Linux 3.7
Product:
postgresql
Reference:
10641
CVE-2019-10164
CVE    1
CVE-2019-10164

© SecPod Technologies