CVE Vulnerabilities

CVE-2007-0555

Published: Feb 06, 2007 | Modified: Jan 19, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
8.5 HIGH
AV:N/AC:L/Au:S/C:C/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

PostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content.

Affected Software

Name Vendor Start Version End Version
Postgresql Postgresql 7.3 (including) 7.3.18 (excluding)
Postgresql Postgresql 7.4 (including) 7.4.16 (excluding)
Postgresql Postgresql 8.0 (including) 8.0.11 (excluding)
Postgresql Postgresql 8.1 (including) 8.1.7 (excluding)
Postgresql Postgresql 8.2 (including) 8.2.2 (excluding)
Red Hat Enterprise Linux 3 RedHat rh-postgresql-0:7.3.18-1 *
Red Hat Enterprise Linux 4 RedHat postgresql-0:7.4.16-1.RHEL4.1 *
Red Hat Enterprise Linux 5 RedHat postgresql-0:8.1.8-1.el5 *
Red Hat Web Application Stack for RHEL 4 RedHat postgresql-0:8.1.7-3.el4s1.1 *
Postgresql-8.1 Ubuntu dapper *
Postgresql-8.1 Ubuntu devel *
Postgresql-8.1 Ubuntu edgy *
Postgresql-8.1 Ubuntu feisty *
Postgresql-8.2 Ubuntu devel *
Postgresql-8.2 Ubuntu feisty *

References