CVE Vulnerabilities

CVE-2025-8715

Improper Neutralization of CRLF Sequences ('CRLF Injection')

Published: Aug 14, 2025 | Modified: Aug 15, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
8.8 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Improper neutralization of newlines in pg_dump in PostgreSQL allows a user of the origin server to inject arbitrary code for restore-time execution as the client operating system account running psql to restore the dump, via psql meta-commands inside a purpose-crafted object name. The same attacks can achieve SQL injection as a superuser of the restore target server. pg_dumpall, pg_restore, and pg_upgrade are also affected. Versions before PostgreSQL 17.6, 16.10, 15.14, 14.19, and 13.22 are affected. Versions before 11.20 are unaffected. CVE-2012-0868 had fixed this class of problem, but version 11.20 reintroduced it.

Weakness

The product uses CRLF (carriage return line feeds) as a special element, e.g. to separate lines or records, but it does not neutralize or incorrectly neutralizes CRLF sequences from inputs.

Affected Software

NameVendorStart VersionEnd Version
Red Hat Enterprise Linux 10RedHatpostgresql16-0:16.10-1.el10_0*
Red Hat Enterprise Linux 8RedHatpostgresql:16-8100020250818110346.489197e6*
Red Hat Enterprise Linux 8RedHatpostgresql:13-8100020250818110147.489197e6*
Red Hat Enterprise Linux 8RedHatpostgresql:15-8100020250818110305.489197e6*
Red Hat Enterprise Linux 8RedHatpostgresql:12-8100020250829093521.489197e6*
Red Hat Enterprise Linux 8.2 Advanced Update SupportRedHatpostgresql:12-8020020250826135918.4cda2c84*
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportRedHatpostgresql:12-8040020250820054803.522a0ee4*
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportRedHatpostgresql:13-8040020250818170654.522a0ee4*
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportRedHatpostgresql:12-8060020250820072728.ad008a3a*
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportRedHatpostgresql:13-8060020250825094024.ad008a3a*
Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceRedHatpostgresql:12-8060020250820072728.ad008a3a*
Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceRedHatpostgresql:13-8060020250825094024.ad008a3a*
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsRedHatpostgresql:12-8060020250820072728.ad008a3a*
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsRedHatpostgresql:13-8060020250825094024.ad008a3a*
Red Hat Enterprise Linux 8.8 Telecommunications Update ServiceRedHatpostgresql:12-8080020250819150429.63b34585*
Red Hat Enterprise Linux 8.8 Telecommunications Update ServiceRedHatpostgresql:13-8080020250819150623.63b34585*
Red Hat Enterprise Linux 8.8 Telecommunications Update ServiceRedHatpostgresql:15-8080020250815150643.63b34585*
Red Hat Enterprise Linux 8.8 Update Services for SAP SolutionsRedHatpostgresql:12-8080020250819150429.63b34585*
Red Hat Enterprise Linux 8.8 Update Services for SAP SolutionsRedHatpostgresql:13-8080020250819150623.63b34585*
Red Hat Enterprise Linux 8.8 Update Services for SAP SolutionsRedHatpostgresql:15-8080020250815150643.63b34585*
Red Hat Enterprise Linux 9RedHatpostgresql:16-9060020250817200213.rhel9*
Red Hat Enterprise Linux 9RedHatpostgresql:15-9060020250817180313.rhel9*
Red Hat Enterprise Linux 9RedHatpostgresql-0:13.22-1.el9_6*
Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsRedHatpostgresql-0:13.22-1.el9_0*
Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionsRedHatpostgresql-0:13.22-1.el9_2*
Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionsRedHatpostgresql:15-9020020250815141744.rhel9*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatpostgresql:15-9040020250818140154.rhel9*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatpostgresql:16-9040020250818135852.rhel9*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatpostgresql-0:13.22-1.el9_4*
Postgresql-10Ubuntuupstream*
Postgresql-12Ubuntuupstream*
Postgresql-14Ubuntujammy*
Postgresql-14Ubuntuupstream*
Postgresql-16Ubuntunoble*
Postgresql-16Ubuntuupstream*
Postgresql-17Ubuntuplucky*
Postgresql-17Ubuntuquesting*
Postgresql-17Ubuntuupstream*
Postgresql-9.3Ubuntuupstream*
Postgresql-9.5Ubuntuupstream*

Potential Mitigations

References