Page 19 of 105 results (0.003 seconds)

CVSS: 2.1EPSS: 0%CPEs: 16EXPL: 0

The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files. • http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=136300 http://marc.info/?l=bugtraq&m=109910073808903&w=2 http://security.gentoo.org/glsa/glsa-200410-16.xml http://www.debian.org/security/2004/dsa-577 http://www.mandriva.com/security/advisories?name=MDKSA-2004:149 http://www.redhat.com/support/errata/RHSA-2004-489.html http://www.securityfocus.com/bid/11295 http://www.trustix.org/errata/2004/0050 https://exchange.xforce.ibmcloud.com/vulnerabilities/17583 https:/ •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in the ODBC driver for PostgreSQL before 7.2.1 allows remote attackers to cause a denial of service (crash). Desbordamiento de búfer en el contolador ODBC de PostgreSQL, en versiones anteriores a 7.2.1 permite a atacantes remotos causar una denegación de servicio (caída). • http://www.debian.org/security/2004/dsa-516 http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:072 https://exchange.xforce.ibmcloud.com/vulnerabilities/16329 •

CVSS: 7.5EPSS: 11%CPEs: 9EXPL: 0

Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before 7.3.4, allows remote attackers to execute arbitrary code. • http://developer.postgresql.org/cvsweb.cgi/pgsql-server/src/backend/utils/adt/ascii.c http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000784 http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000772 http://www.debian.org/security/2003/dsa-397 http://www.redhat.com/support/errata/RHSA-2003-313.html http://www.redhat.com/support/errata/RHSA-2003-314.html http://www.securityfocus.com/bid/8741 https://access.redhat.com/security/cve/CVE-2003-0901 htt •

CVSS: 10.0EPSS: 1%CPEs: 9EXPL: 0

Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier, and possibly later versions before 7.2.3, with unknown impact, based on an invalid integer input which is processed as a different data type, as demonstrated using cash_out(2). Vulnerabilidad desconocida en la función cash_out en PostgreSQL 7.2.1 y anteriores, y posiblemente versiones anteriores a 7.2.3, con impacto desconocido, basado en una entrada de enteros inválida. • http://archives.postgresql.org/pgsql-hackers/2002-08/msg00708.php http://archives.postgresql.org/pgsql-hackers/2002-08/msg00713.php http://marc.info/?l=bugtraq&m=102978152712430&w=2 •

CVSS: 7.5EPSS: 0%CPEs: 8EXPL: 0

Vulnerability in the cash_words() function for PostgreSQL 7.2 and earlier allows local users to cause a denial of service and possibly execute arbitrary code via a large negative argument, possibly triggering an integer signedness error or buffer overflow. Desbordamiento de búfer en la función cash_words() en PostgreSQL 7.2 y anteriores permite a usuarios locales causar una denegación de servicio y posiblemente ejecutar código arbitrario mediante un argurmento malformado. • http://developer.postgresql.org/cvsweb.cgi/pgsql-server/src/backend/utils/adt/cash.c.diff?r1=1.51&r2=1.52 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000524 http://marc.info/?l=bugtraq&m=102977465204357&w=2 http://secunia.com/advisories/8034 http://www.redhat.com/support/errata/RHSA-2003-001.html http://www.securityfocus.com/bid/5497 https://exchange.xforce.ibmcloud.com/vulnerabilities/9891 https://access.redhat.com/security/cve/CVE-2002-1397 https:// •