CVE-2002-1642
https://notcve.org/view.php?id=CVE-2002-1642
PostgreSQL 7.2.1 and 7.2.2 allows local users to delete transaction log (pg_clog) data and cause a denial of service (data loss) via the VACUUM command. • http://archives.postgresql.org/pgsql-announce/2002-10/msg00000.php http://www.kb.cert.org/vuls/id/891177 http://www.redhat.com/support/errata/RHSA-2003-001.html http://www.securityfocus.com/bid/7657 https://exchange.xforce.ibmcloud.com/vulnerabilities/11102 •
CVE-2002-0972
https://notcve.org/view.php?id=CVE-2002-0972
Buffer overflows in PostgreSQL 7.2 allow attackers to cause a denial of service and possibly execute arbitrary code via long arguments to the functions (1) lpad or (2) rpad. Desbordamiento de búfer en PostgreSQL 7.2 permite a atacantes remotos causar una denegación de servicio y posiblemente ejecutar código arbitrario mediante argumentos largos en las funciones lpad y rpad. • http://marc.info/?l=bugtraq&m=102987608300785&w=2 http://secunia.com/advisories/8034 http://www.redhat.com/support/errata/RHSA-2003-001.html https://access.redhat.com/security/cve/CVE-2002-0972 https://bugzilla.redhat.com/show_bug.cgi?id=1616832 •
CVE-2002-0802
https://notcve.org/view.php?id=CVE-2002-0802
The multibyte support in PostgreSQL 6.5.x with SQL_ASCII encoding consumes an extra character when processing a character that cannot be converted, which could remove an escape character from the query and make the application subject to SQL injection attacks. • http://marc.info/?l=postgresql-general&m=102032794322362 http://www.iss.net/security_center/static/10328.php http://www.redhat.com/support/errata/RHSA-2002-149.html •
CVE-2000-1199 – PostgreSQL 6.3.2/6.5.3 - Cleartext Passwords
https://notcve.org/view.php?id=CVE-2000-1199
PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with sufficient privileges to gain access to databases. • https://www.exploit-db.com/exploits/19875 http://marc.info/?l=bugtraq&m=95659987018649&w=2 http://www.securityfocus.com/bid/1139 https://exchange.xforce.ibmcloud.com/vulnerabilities/4364 •
CVE-1999-0862
https://notcve.org/view.php?id=CVE-1999-0862
Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0862 •