CVE-2009-0922

Postgresql - Resource Management Error

Title source: rule

Description

PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of service (stack consumption and crash) by triggering a failure in the conversion of a localized error message to a client-specified encoding, as demonstrated using mismatched encoding conversion requests.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Afonin Denis · textdoslinux
https://www.exploit-db.com/exploits/32849

References (24)

... and 4 more

Scores

EPSS 0.0920
EPSS Percentile 92.6%

Classification

CWE
CWE-399
Status draft

Affected Products (5)

postgresql/postgresql
postgresql/postgresql
postgresql/postgresql
postgresql/postgresql
postgresql/postgresql

Timeline

Published Mar 17, 2009
Tracked Since Feb 18, 2026