Buffer overflow in the gettoken function in contrib/intarray/_int_bool.c in the intarray array module in PostgreSQL 9.0.x before 9.0.3, 8.4.x before 8.4.7, 8.3.x before 8.3.14, and 8.2.x before 8.2.20 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via integers with a large number of digits to unspecified functions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Postgresql | Postgresql | 8.3 (including) | 8.3 (including) |
Postgresql | Postgresql | 8.3.1 (including) | 8.3.1 (including) |
Postgresql | Postgresql | 8.3.2 (including) | 8.3.2 (including) |
Postgresql | Postgresql | 8.3.3 (including) | 8.3.3 (including) |
Postgresql | Postgresql | 8.3.4 (including) | 8.3.4 (including) |
Postgresql | Postgresql | 8.3.5 (including) | 8.3.5 (including) |
Postgresql | Postgresql | 8.3.6 (including) | 8.3.6 (including) |
Postgresql | Postgresql | 8.3.7 (including) | 8.3.7 (including) |
Postgresql | Postgresql | 8.3.8 (including) | 8.3.8 (including) |
Postgresql | Postgresql | 8.3.9 (including) | 8.3.9 (including) |
Postgresql | Postgresql | 8.3.10 (including) | 8.3.10 (including) |
Postgresql | Postgresql | 8.3.11 (including) | 8.3.11 (including) |
Postgresql | Postgresql | 8.3.12 (including) | 8.3.12 (including) |
Postgresql | Postgresql | 8.3.13 (including) | 8.3.13 (including) |
Red Hat Enterprise Linux 4 | RedHat | postgresql-0:7.4.30-1.el4_8.2 | * |
Red Hat Enterprise Linux 5 | RedHat | postgresql-0:8.1.23-1.el5_6.1 | * |
Red Hat Enterprise Linux 5 | RedHat | postgresql84-0:8.4.7-1.el5_6.1 | * |
Red Hat Enterprise Linux 6 | RedHat | postgresql-0:8.4.7-1.el6_0.1 | * |
Postgresql-8.1 | Ubuntu | dapper | * |
Postgresql-8.3 | Ubuntu | hardy | * |
Postgresql-8.3 | Ubuntu | karmic | * |
Postgresql-8.4 | Ubuntu | karmic | * |
Postgresql-8.4 | Ubuntu | lucid | * |
Postgresql-8.4 | Ubuntu | maverick | * |