PostgreSQL 8.1.0 through 8.1.2 allows authenticated database users to gain additional privileges via knowledge of the backend protocol using a crafted SET ROLE to other database users, a different vulnerability than CVE-2006-0678.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Postgresql | Postgresql | 8.1.0 (including) | 8.1.0 (including) |
| Postgresql | Postgresql | 8.1.1 (including) | 8.1.1 (including) |
| Postgresql | Postgresql | 8.1.2 (including) | 8.1.2 (including) |
| Postgresql-8.1 | Ubuntu | dapper | * |
| Postgresql-8.1 | Ubuntu | devel | * |
| Postgresql-8.1 | Ubuntu | edgy | * |
| Postgresql-8.1 | Ubuntu | feisty | * |
| Postgresql-8.2 | Ubuntu | devel | * |
| Postgresql-8.2 | Ubuntu | feisty | * |