CVE Vulnerabilities

CVE-2002-1397

Published: Jan 17, 2003 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Vulnerability in the cash_words() function for PostgreSQL 7.2 and earlier allows local users to cause a denial of service and possibly execute arbitrary code via a large negative argument, possibly triggering an integer signedness error or buffer overflow.

Affected Software

Name Vendor Start Version End Version
Postgresql Postgresql 6.3.2 (including) 6.3.2 (including)
Postgresql Postgresql 6.5.3 (including) 6.5.3 (including)
Postgresql Postgresql 7.0.3 (including) 7.0.3 (including)
Postgresql Postgresql 7.1 (including) 7.1 (including)
Postgresql Postgresql 7.1.1 (including) 7.1.1 (including)
Postgresql Postgresql 7.1.2 (including) 7.1.2 (including)
Postgresql Postgresql 7.1.3 (including) 7.1.3 (including)
Postgresql Postgresql 7.2 (including) 7.2 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Linux 6.2 RedHat *
Red Hat Linux 7.0 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.2 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *

References