PostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Postgresql | Postgresql | 7.3 (including) | 7.3.18 (excluding) |
Postgresql | Postgresql | 7.4 (including) | 7.4.16 (excluding) |
Postgresql | Postgresql | 8.0 (including) | 8.0.11 (excluding) |
Postgresql | Postgresql | 8.1 (including) | 8.1.7 (excluding) |
Postgresql | Postgresql | 8.2 (including) | 8.2.2 (excluding) |
Red Hat Enterprise Linux 3 | RedHat | rh-postgresql-0:7.3.18-1 | * |
Red Hat Enterprise Linux 4 | RedHat | postgresql-0:7.4.16-1.RHEL4.1 | * |
Red Hat Enterprise Linux 5 | RedHat | postgresql-0:8.1.8-1.el5 | * |
Red Hat Web Application Stack for RHEL 4 | RedHat | postgresql-0:8.1.7-3.el4s1.1 | * |
Postgresql-8.1 | Ubuntu | dapper | * |
Postgresql-8.1 | Ubuntu | devel | * |
Postgresql-8.1 | Ubuntu | edgy | * |
Postgresql-8.1 | Ubuntu | feisty | * |
Postgresql-8.2 | Ubuntu | devel | * |
Postgresql-8.2 | Ubuntu | feisty | * |