Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.810991
Kategorie:Databases
Titel:PostgreSQL Multiple Information Disclosure Vulnerabilities - May17 (Windows)
Zusammenfassung:PostgreSQL is prone to multiple information disclosure vulnerabilities.
Beschreibung:Summary:
PostgreSQL is prone to multiple information disclosure vulnerabilities.

Vulnerability Insight:
Multiple flaws are due to:

- Some selectivity estimation functions did not check user privileges before
providing information from pg_statistic, possibly leaking information.

- An error in 'pg_user_mappings' view.

Vulnerability Impact:
Successful exploitation will allow an
unprivileged attacker to steal some information.

Affected Software/OS:
PostgreSQL version before 9.2.21, 9.3.x
before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3.

Solution:
Upgrade to PostgreSQL version 9.2.21 or
9.3.17 or 9.4.12 or 9.5.7 or 9.6.3 or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-7484
BugTraq ID: 98459
http://www.securityfocus.com/bid/98459
Debian Security Information: DSA-3851 (Google Search)
http://www.debian.org/security/2017/dsa-3851
https://security.gentoo.org/glsa/201710-06
RedHat Security Advisories: RHSA-2017:1677
https://access.redhat.com/errata/RHSA-2017:1677
RedHat Security Advisories: RHSA-2017:1678
https://access.redhat.com/errata/RHSA-2017:1678
RedHat Security Advisories: RHSA-2017:1838
https://access.redhat.com/errata/RHSA-2017:1838
RedHat Security Advisories: RHSA-2017:1983
https://access.redhat.com/errata/RHSA-2017:1983
RedHat Security Advisories: RHSA-2017:2425
https://access.redhat.com/errata/RHSA-2017:2425
http://www.securitytracker.com/id/1038476
Common Vulnerability Exposure (CVE) ID: CVE-2017-7486
BugTraq ID: 98460
http://www.securityfocus.com/bid/98460
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.