
CVE-2005-0244
https://notcve.org/view.php?id=CVE-2005-0244
08 Feb 2005 — PostgreSQL 8.0.0 and earlier allows local users to bypass the EXECUTE permission check for functions by using the CREATE AGGREGATE command. • http://archives.postgresql.org/pgsql-hackers/2005-01/msg00922.php • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2005-0227
https://notcve.org/view.php?id=CVE-2005-0227
06 Feb 2005 — PostgreSQL (pgsql) 7.4.x, 7.2.x, and other versions allows local users to load arbitrary shared libraries and execute code via the LOAD extension. • http://archives.postgresql.org/pgsql-announce/2005-02/msg00000.php • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2005-0245 – PostgreSQL 7.x - Multiple Vulnerabilities
https://notcve.org/view.php?id=CVE-2005-0245
01 Feb 2005 — Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than CVE-2005-0247. • https://www.exploit-db.com/exploits/25076 •

CVE-2004-0977
https://notcve.org/view.php?id=CVE-2004-0977
20 Oct 2004 — The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files. • http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=136300 •

CVE-2004-0547
https://notcve.org/view.php?id=CVE-2004-0547
11 Jun 2004 — Buffer overflow in the ODBC driver for PostgreSQL before 7.2.1 allows remote attackers to cause a denial of service (crash). Desbordamiento de búfer en el contolador ODBC de PostgreSQL, en versiones anteriores a 7.2.1 permite a atacantes remotos causar una denegación de servicio (caída). • http://www.debian.org/security/2004/dsa-516 •

CVE-2003-0901
https://notcve.org/view.php?id=CVE-2003-0901
30 Oct 2003 — Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before 7.3.4, allows remote attackers to execute arbitrary code. • http://developer.postgresql.org/cvsweb.cgi/pgsql-server/src/backend/utils/adt/ascii.c •

CVE-2002-1398
https://notcve.org/view.php?id=CVE-2002-1398
08 Jan 2003 — Buffer overflow in the date parser for PostgreSQL before 7.2.2 allows attackers to cause a denial of service and possibly execute arbitrary code via a long date string, aka a vulnerability "in handling long datetime input." Desbordamiento de búfer en el procesador de fechas de PostgreSQL 7.2.2 permite a atacantes causar una denegación de servicio y posiblemente ejecutar código arbitrario mediante una cadena de fecha larga. • http://archives.postgresql.org/pgsql-announce/2002-08/msg00004.php •

CVE-2002-1399
https://notcve.org/view.php?id=CVE-2002-1399
08 Jan 2003 — Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier, and possibly later versions before 7.2.3, with unknown impact, based on an invalid integer input which is processed as a different data type, as demonstrated using cash_out(2). Vulnerabilidad desconocida en la función cash_out en PostgreSQL 7.2.1 y anteriores, y posiblemente versiones anteriores a 7.2.3, con impacto desconocido, basado en una entrada de enteros inválida. • http://archives.postgresql.org/pgsql-hackers/2002-08/msg00708.php •

CVE-2002-1397
https://notcve.org/view.php?id=CVE-2002-1397
08 Jan 2003 — Vulnerability in the cash_words() function for PostgreSQL 7.2 and earlier allows local users to cause a denial of service and possibly execute arbitrary code via a large negative argument, possibly triggering an integer signedness error or buffer overflow. Desbordamiento de búfer en la función cash_words() en PostgreSQL 7.2 y anteriores permite a usuarios locales causar una denegación de servicio y posiblemente ejecutar código arbitrario mediante un argurmento malformado. • http://developer.postgresql.org/cvsweb.cgi/pgsql-server/src/backend/utils/adt/cash.c.diff?r1=1.51&r2=1.52 •

CVE-2002-1401
https://notcve.org/view.php?id=CVE-2002-1401
08 Jan 2003 — Buffer overflows in (1) circle_poly, (2) path_encode and (3) path_add (also incorrectly identified as path_addr) for PostgreSQL 7.2.3 and earlier allow attackers to cause a denial of service and possibly execute arbitrary code, possibly as a result of an integer overflow. Desbordamientos de búfer en PostgreSQL 6.3.2 a 7.2.3 en las funciones geo circle_poly(), path_encode y path_add (también definida incorrectamente como path_addr permite a atacantes causar una denegación de servicio y posiblemente ejecutar ... • http://archives.postgresql.org/pgsql-hackers/2002-08/msg02047.php • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •