CVE Vulnerabilities

CVE-2015-3165

Published: May 28, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
5 MODERATE
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash) by closing an SSL session at a time when the authentication timeout will expire during the session shutdown sequence.

Affected Software

NameVendorStart VersionEnd Version
Ubuntu_linuxCanonical12.04 (including)12.04 (including)
Ubuntu_linuxCanonical14.04 (including)14.04 (including)
Ubuntu_linuxCanonical14.10 (including)14.10 (including)
Ubuntu_linuxCanonical15.04 (including)15.04 (including)
Debian_linuxDebian7.0 (including)7.0 (including)
Debian_linuxDebian8.0 (including)8.0 (including)
Red Hat Enterprise Linux 6RedHatpostgresql-0:8.4.20-3.el6_6*
Red Hat Enterprise Linux 7RedHatpostgresql-0:9.2.13-1.el7_1*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpostgresql92-postgresql-0:9.2.13-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-postgresql94-postgresql-0:9.4.4-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpostgresql92-postgresql-0:9.2.13-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatrh-postgresql94-postgresql-0:9.4.4-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpostgresql92-postgresql-0:9.2.13-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatrh-postgresql94-postgresql-0:9.4.4-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpostgresql92-postgresql-0:9.2.13-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-postgresql94-postgresql-0:9.4.4-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.1 EUSRedHatpostgresql92-postgresql-0:9.2.13-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.1 EUSRedHatrh-postgresql94-postgresql-0:9.4.4-1.el7*
Postgresql-8.4Ubuntuprecise*
Postgresql-9.1Ubuntuprecise*
Postgresql-9.1Ubuntutrusty*
Postgresql-9.1Ubuntuupstream*
Postgresql-9.3Ubuntuesm-infra-legacy/trusty*
Postgresql-9.3Ubuntutrusty*
Postgresql-9.3Ubuntutrusty/esm*
Postgresql-9.3Ubuntuupstream*
Postgresql-9.4Ubuntuupstream*
Postgresql-9.4Ubuntuutopic*
Postgresql-9.4Ubuntuvivid*
Postgresql-9.4Ubuntuwily*

References