A flaw was found in postgresql in versions before 13.3, before 12.7, before 11.12, before 10.17 and before 9.6.22. While modifying certain SQL array values, missing bounds checks let authenticated database users write arbitrary bytes to a wide area of server memory. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Se ha encontrado un fallo en postgresql en las versiones anteriores a 13.3, versiones anteriores a 12.7, versiones anteriores a 11.12, versiones anteriores a 10.17 y versiones anteriores a 9.6.22. Cuando se modifican determinados valores de matrices SQL, una falta de comprobación de límites permite a usuarios autentificados de la base de datos escribir bytes arbitrarios en una amplia zona de la memoria del servidor. La mayor amenaza de esta vulnerabilidad es la confidencialidad e integridad de los datos, así como la disponibilidad del sistema
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | LOW |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
AV:N/AC:L/Au:S/C:P/I:P/A:P
| Access Vector | NETWORK |
|---|---|
| Access Complexity | LOW |
| Authentication | SINGLE |
| Confidentiality Impact | PARTIAL |
| Integrity Impact | PARTIAL |
| Availability Impact | PARTIAL |
| Source | Type | Description |
|---|---|---|
| [email protected] | Secondary |
en
CWE-190
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| postgresql | postgresql | * | <built-in method update of dict object at 0x72a9ccf29540> | Application |
| postgresql | postgresql | * | <built-in method update of dict object at 0x72a9994abbc0> | Application |
| postgresql | postgresql | * | <built-in method update of dict object at 0x72a9994a94c0> | Application |
| postgresql | postgresql | * | <built-in method update of dict object at 0x72a9b0d23f00> | Application |
| postgresql | postgresql | * | <built-in method update of dict object at 0x72a9ccf29d40> | Application |
| redhat | jboss_enterprise_application_platform | 7.0.0 | <built-in method update of dict object at 0x72a9ccf28940> | Application |
| redhat | software_collections | - | <built-in method update of dict object at 0x72a9994ab040> | Application |
| redhat | enterprise_linux | 7.0 | <built-in method update of dict object at 0x72a9994a8c80> | Operating System |
| redhat | enterprise_linux | 8.0 | <built-in method update of dict object at 0x72a9994a8c00> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.0.0:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:redhat:software_collections:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* |