PostgreSQL 8.3.x before 8.3.19, 8.4.x before 8.4.12, 9.0.x before 9.0.8, and 9.1.x before 9.1.4 allows remote authenticated users to cause a denial of service (server crash) by adding the (1) SECURITY DEFINER or (2) SET attributes to a procedural languages call handler.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Postgresql | Postgresql | 8.3 (including) | 8.3 (including) |
Postgresql | Postgresql | 8.3.1 (including) | 8.3.1 (including) |
Postgresql | Postgresql | 8.3.2 (including) | 8.3.2 (including) |
Postgresql | Postgresql | 8.3.3 (including) | 8.3.3 (including) |
Postgresql | Postgresql | 8.3.4 (including) | 8.3.4 (including) |
Postgresql | Postgresql | 8.3.5 (including) | 8.3.5 (including) |
Postgresql | Postgresql | 8.3.6 (including) | 8.3.6 (including) |
Postgresql | Postgresql | 8.3.7 (including) | 8.3.7 (including) |
Postgresql | Postgresql | 8.3.8 (including) | 8.3.8 (including) |
Postgresql | Postgresql | 8.3.9 (including) | 8.3.9 (including) |
Postgresql | Postgresql | 8.3.10 (including) | 8.3.10 (including) |
Postgresql | Postgresql | 8.3.11 (including) | 8.3.11 (including) |
Postgresql | Postgresql | 8.3.12 (including) | 8.3.12 (including) |
Postgresql | Postgresql | 8.3.13 (including) | 8.3.13 (including) |
Postgresql | Postgresql | 8.3.14 (including) | 8.3.14 (including) |
Postgresql | Postgresql | 8.3.15 (including) | 8.3.15 (including) |
Postgresql | Postgresql | 8.3.16 (including) | 8.3.16 (including) |
Postgresql | Postgresql | 8.3.17 (including) | 8.3.17 (including) |
Postgresql | Postgresql | 8.3.18 (including) | 8.3.18 (including) |
Red Hat Enterprise Linux 5 | RedHat | postgresql84-0:8.4.12-1.el5_8 | * |
Red Hat Enterprise Linux 6 | RedHat | postgresql-0:8.4.12-1.el6_2 | * |
Postgresql-8.2 | Ubuntu | hardy | * |
Postgresql-8.3 | Ubuntu | hardy | * |
Postgresql-8.3 | Ubuntu | upstream | * |
Postgresql-8.4 | Ubuntu | lucid | * |
Postgresql-8.4 | Ubuntu | natty | * |
Postgresql-8.4 | Ubuntu | oneiric | * |
Postgresql-8.4 | Ubuntu | precise | * |
Postgresql-8.4 | Ubuntu | upstream | * |
Postgresql-9.1 | Ubuntu | oneiric | * |
Postgresql-9.1 | Ubuntu | precise | * |
Postgresql-9.1 | Ubuntu | upstream | * |