CVE Vulnerabilities

CVE-2014-2669

Published: Mar 31, 2014 | Modified: Dec 16, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple integer overflows in contrib/hstore/hstore_io.c in PostgreSQL 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact via vectors related to the (1) hstore_recv, (2) hstore_from_arrays, and (3) hstore_from_array functions in contrib/hstore/hstore_io.c; and the (4) hstoreArrayToPairs function in contrib/hstore/hstore_op.c, which triggers a buffer overflow. NOTE: this issue was SPLIT from CVE-2014-0064 because it has a different set of affected versions.

Affected Software

Name Vendor Start Version End Version
Postgresql Postgresql 9.0 (including) 9.0 (including)
Postgresql Postgresql 9.0.1 (including) 9.0.1 (including)
Postgresql Postgresql 9.0.2 (including) 9.0.2 (including)
Postgresql Postgresql 9.0.3 (including) 9.0.3 (including)
Postgresql Postgresql 9.0.4 (including) 9.0.4 (including)
Postgresql Postgresql 9.0.5 (including) 9.0.5 (including)
Postgresql Postgresql 9.0.6 (including) 9.0.6 (including)
Postgresql Postgresql 9.0.7 (including) 9.0.7 (including)
Postgresql Postgresql 9.0.8 (including) 9.0.8 (including)
Postgresql Postgresql 9.0.9 (including) 9.0.9 (including)
Postgresql Postgresql 9.0.10 (including) 9.0.10 (including)
Postgresql Postgresql 9.0.11 (including) 9.0.11 (including)
Postgresql Postgresql 9.0.12 (including) 9.0.12 (including)
Postgresql Postgresql 9.0.13 (including) 9.0.13 (including)
Postgresql Postgresql 9.0.14 (including) 9.0.14 (including)
Postgresql Postgresql 9.0.15 (including) 9.0.15 (including)
Postgresql Postgresql 9.1 (including) 9.1 (including)
Postgresql Postgresql 9.1.1 (including) 9.1.1 (including)
Postgresql Postgresql 9.1.2 (including) 9.1.2 (including)
Postgresql Postgresql 9.1.3 (including) 9.1.3 (including)
Postgresql Postgresql 9.1.4 (including) 9.1.4 (including)
Postgresql Postgresql 9.1.5 (including) 9.1.5 (including)
Postgresql Postgresql 9.1.6 (including) 9.1.6 (including)
Postgresql Postgresql 9.1.7 (including) 9.1.7 (including)
Postgresql Postgresql 9.1.8 (including) 9.1.8 (including)
Postgresql Postgresql 9.1.9 (including) 9.1.9 (including)
Postgresql Postgresql 9.1.10 (including) 9.1.10 (including)
Postgresql Postgresql 9.1.11 (including) 9.1.11 (including)
Postgresql Postgresql 9.2 (including) 9.2 (including)
Postgresql Postgresql 9.2.1 (including) 9.2.1 (including)
Postgresql Postgresql 9.2.2 (including) 9.2.2 (including)
Postgresql Postgresql 9.2.3 (including) 9.2.3 (including)
Postgresql Postgresql 9.2.4 (including) 9.2.4 (including)
Postgresql Postgresql 9.2.5 (including) 9.2.5 (including)
Postgresql Postgresql 9.3 (including) 9.3 (including)
Postgresql Postgresql 9.3.1 (including) 9.3.1 (including)
Postgresql Postgresql 9.3.2 (including) 9.3.2 (including)

References