When PgBouncer is configured to use cert authentication, a man-in-the-middle attacker can inject arbitrary SQL queries when a connection is first established, despite the use of TLS certificate verification and encryption. This flaw affects PgBouncer versions prior to 1.16.1.
The product does not validate, or incorrectly validates, a certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pgbouncer | Pgbouncer | * | 1.16.1 (excluding) |
Pgbouncer | Ubuntu | bionic | * |
Pgbouncer | Ubuntu | hirsute | * |
Pgbouncer | Ubuntu | impish | * |
Pgbouncer | Ubuntu | kinetic | * |
Pgbouncer | Ubuntu | trusty | * |
Pgbouncer | Ubuntu | upstream | * |
Pgbouncer | Ubuntu | xenial | * |