postgresql

186 tracked vulnerabilities.

CVE-2007-3278
PostgreSQL 8.1 and later - Remote SQL Query Execution via dblink Host Parameter
Jun 19, 2007
EPSS 0.01
CVE-2007-3279
PostgreSQL 8.1 and later - Unauthenticated Arbitrary Function Execution via PL/pgSQL PUBLIC Privileges
Jun 19, 2007
EPSS 0.03
CVE-2007-3280
PostgreSQL 8.1 - Authenticated Remote Code Execution via Database Link Library
Jun 19, 2007
EPSS 0.49
CVE-2007-2138
PostgreSQL < 7.3.19, 7.4.x < 7.4.17, 8.0.x < 8.0.13, 8.1.x < 8.1.9, 8.2.x < 8.2.4 - Privilege Escalation via Search Path
Apr 24, 2007
EPSS 0.02
CVE-2007-0555
PostgreSQL 7.3-7.3.12, 7.4-7.4.15, 8.0-8.0.10, 8.1-8.1.6, 8.2-8.2.1 - DoS via SQL Function Argument Type Check Bypass
Feb 06, 2007
EPSS 0.02
CVE-2007-0556
PostgreSQL < 8.0.11, 8.1 < 8.1.7, 8.2 < 8.2.2 - Authenticated Denial of Service via ALTER COLUMN TYPE
Feb 06, 2007
EPSS 0.02
CVE-2006-5540
PostgreSQL 8.1.x < 8.1.5 - Authenticated Denial of Service via Aggregate Functions in UPDATE Statement
Oct 26, 2006
EPSS 0.02
CVE-2006-5541
PostgreSQL 7.4.1-7.4.14 - Authenticated Denial of Service via ANYARRAY Coercion
Oct 26, 2006
EPSS 0.02
CVE-2006-5542
PostgreSQL 8.1.x - Authenticated Denial of Service via V3 Protocol Execute Message Logging
Oct 26, 2006
EPSS 0.02
CVE-2006-2313
PostgreSQL < 8.1.4, < 8.0.8, < 7.4.13, < 7.3.15 - SQL Injection via Invalid Multibyte Character Encoding
May 24, 2006
EPSS 0.01
CVE-2006-2314
PostgreSQL < 8.1.4, 8.0.8, 7.4.13, 7.3.15 - SQL Injection via Multibyte Encoding Bypass
May 24, 2006
EPSS 0.02
CVE-2006-0553
PostgreSQL 8.1.0-8.1.2 - Authenticated Privilege Escalation via SET ROLE
Feb 14, 2006
EPSS 0.02
CVE-2006-0678
PostgreSQL DoS via SET SESSION AUTHORIZATION Command
Feb 14, 2006
EPSS 0.00
CVE-2006-0105
PostgreSQL 8.0.x-8.0.6 8.1.x-8.1.2 - Denial of Service via Simultaneous Connection Requests
Jan 10, 2006
EPSS 0.02
CVE-2005-1409
PostgreSQL 7.3.x-8.0.x - Unauthenticated Character Conversion Function Execution
May 03, 2005
EPSS 0.01
CVE-2005-1410
PostgreSQL 7.4-8.0.x - Denial of Service via tsearch2 Module Function Calls
May 03, 2005
EPSS 0.00
CVE-2005-0227
PostgreSQL 7.3.0-7.3.9 - Local Code Execution via LOAD Extension
May 02, 2005
EPSS 0.00
CVE-2005-0244
PostgreSQL <= 8.0.0 - Unauthenticated Permission Bypass via CREATE AGGREGATE Command
May 02, 2005
EPSS 0.01
CVE-2005-0246
PostgreSQL < 7.3.9 - Denial of Service via intagg Contrib Module Array Handling
May 02, 2005
EPSS 0.02
CVE-2005-0247
PostgreSQL <= 8.0.1 - Multiple Buffer Overflows in gram.y SQL Parsing
May 02, 2005
EPSS 0.02
CVE-2005-0245
PostgreSQL < 7.3.10 - Heap-Based Buffer Overflow via Refcursor Function Arguments
Feb 01, 2005
EPSS 0.23
CVE-2004-0977
PostgreSQL <7.4.5 - Local File Overwrite
Feb 09, 2005
EPSS 0.00
CVE-2004-0547
PostgreSQL < 7.2.1 - Denial of Service via ODBC Driver Buffer Overflow
Aug 06, 2004
EPSS 0.01
CVE-2003-0901
PostgreSQL 7.2.x and 7.3.x < 7.3.4 - Remote Code Execution via to_ascii Buffer Overflow
Nov 03, 2003
EPSS 0.06
CVE-2002-1397
PostgreSQL <= 7.2 - Denial of Service and Possible Remote Code Execution via cash_words() Function
Jan 17, 2003
EPSS 0.01