CVE Vulnerabilities

CVE-2019-10211

Published: Oct 29, 2019 | Modified: Oct 28, 2021
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
7.8 MODERATE
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Ubuntu

Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via bundled OpenSSL executing code from unprotected directory.

Affected Software

Name Vendor Start Version End Version
Postgresql Postgresql * 9.4.24 (excluding)
Postgresql Postgresql 9.5.0 (including) 9.5.19 (excluding)
Postgresql Postgresql 9.6.0 (including) 9.6.15 (excluding)
Postgresql Postgresql 10.0 (including) 10.10 (excluding)
Postgresql Postgresql 11.0 (including) 11.5 (excluding)

References