Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
248 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.50% | — | Postgresql-commonCanonical Ubuntu LinuxDebian Linux | 20/11/2019 | 17/6/2026 | The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation. | |
| Modificada | Crítica (9.8) | 1.8% | — | Postgresql | 29/10/2019 | 17/6/2026 | Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via bundled OpenSSL executing code from unprotected directory. | |
| Modificada | Alta (7) | 0.39% | — | Postgresql | 29/10/2019 | 17/6/2026 | Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via superuser writing password to unprotected temporary file. | |
| Modificada | Baja (2.2) | 1.1% | — | Postgresql | 29/10/2019 | 17/6/2026 | Postgresql, versions 11.x before 11.5, is vulnerable to a memory disclosure in cross-type comparison for hashed subplan. | |
| Modificada | Alta (8.8) | 2.2% | — | Postgresql | 29/10/2019 | 17/6/2026 | A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5.x before 9.5.19, 9.6.x before 9.6.15, 10.x before 10.10 and 11.x before 11.5 where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL… | |
| Modificada | Alta (7.8) | 2.1% | — | Pivotal Cloud Foundry Command Line InterfacePivotal Cloud Foundry Command Line Interface ReleasePivotal Cloud Foundry DeploymentPivotal Cloud Foundry Deployment Concourse Tasks+51 | 5/8/2019 | 17/6/2026 | CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag. A local authenticated malicious user with access to the CF CLI config file can act as that client, who is the owner of the leaked credentials. | |
| Modificada | Media (4.3) | 1.1% | — | PostgresqlOpensuse Leap | 30/7/2019 | 17/6/2026 | A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the… | |
| Modificada | Media (6.5) | 1.6% | — | Postgresql | 30/7/2019 | 17/6/2026 | A vulnerability was found in postgresql versions 11.x prior to 11.3. Using a purpose-crafted insert to a partitioned table, an attacker can read arbitrary bytes of server memory. In the default configuration, any user can create a partitioned table suitable for this attack. (Exploit prerequisites are the same as for… | |
| Modificada | Alta (8.8) | 3.7% | — | PostgresqlRedhat Enterprise LinuxFedoraproject FedoraOpensuse Leap | 26/6/2019 | 17/6/2026 | PostgreSQL versions 10.x before 10.9 and versions 11.x before 11.4 are vulnerable to a stack-based buffer overflow. Any authenticated user can overflow a stack-based buffer by changing the user's own password to a purpose-crafted value. This often suffices to execute arbitrary code as the PostgreSQL operating system… | |
| Modificada | Alta (7.2) | 92% | 💥 Exploit | Postgresql | 1/4/2019 | 17/6/2026 | In PostgreSQL 9.3 through 11.2, the "COPY TO/FROM PROGRAM" function allows superusers and users in the 'pg_execute_server_program' group to execute arbitrary code in the context of the database's operating system user. This functionality is enabled by default and can be abused to run arbitrary operating system… | |
| Modificada | Crítica (9.8) | 5.1% | — | PostgresqlRedhat Enterprise LinuxCanonical Ubuntu Linux | 13/11/2018 | 17/6/2026 | postgresql before versions 11.1, 10.6 is vulnerable to a to SQL injection in pg_upgrade and pg_dump via CREATE TRIGGER ... REFERENCING. Using a purpose-crafted trigger definition, an attacker can cause arbitrary SQL statements to run, with superuser privileges. | |
| Modificada | Alta (8.1) | 2.9% | 💥 PoC | Postgresql Jdbc DriverRedhat Enterprise Linux | 30/8/2018 | 17/6/2026 | A weakness was found in postgresql-jdbc before version 42.2.5. It was possible to provide an SSL Factory and not check the host name if a host name verifier was not provided to the driver. This could lead to a condition where a man-in-the-middle attacker could masquerade as a trusted server by providing a certificate… | |
| Modificada | Alta (8.1) | 4.9% | — | Postgresql | 20/8/2018 | 17/6/2026 | The interactive installer in PostgreSQL before 9.3.15, 9.4.x before 9.4.10, and 9.5.x before 9.5.5 might allow remote attackers to execute arbitrary code by leveraging use of HTTP to download software. | |
| Modificada | Alta (8.1) | 2.2% | — | Canonical Ubuntu LinuxDebian LinuxPostgresql | 9/8/2018 | 17/6/2026 | It was discovered that PostgreSQL versions before 10.5, 9.6.10, 9.5.14, 9.4.19, and 9.3.24 failed to properly check authorization on certain statements involved with "INSERT ... ON CONFLICT DO UPDATE". An attacker with "CREATE TABLE" privileges could exploit this to read arbitrary bytes server memory. If the attacker… | |
| Modificada | Alta (7.5) | 5.2% | — | Redhat OpenstackRedhat VirtualizationRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 9/8/2018 | 17/6/2026 | A vulnerability was found in libpq, the default PostgreSQL client library where libpq failed to properly reset its internal state between connections. If an affected version of libpq was used with "host" or "hostaddr" connection parameters from untrusted input, attackers could bypass client-side connection security… | |
| Modificada | Crítica (9.1) | 3.9% | — | PostgresqlOpensuse Leap | 10/5/2018 | 17/6/2026 | postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow the same ACLs than pg_rorate_logfile. If the adminpack is added to a database, an attacker able to connect to it could exploit this to force log rotation. | |
| Modificada | Alta (8.8) | 13% | 💥 PoC | PostgresqlCanonical Ubuntu LinuxRedhat Cloudforms | 2/3/2018 | 17/6/2026 | A flaw was found in the way Postgresql allowed a user to modify the behavior of a query for other users. An attacker with a user account could use this flaw to execute code with the permissions of superuser in the database. Versions 9.3 through 10 are affected. | |
| Modificada | Alta (7) | 1.00% | 💥 Exploit | PostgresqlSuse Linux Enterprise Server | 1/3/2018 | 17/6/2026 | A race condition in the postgresql init script could be used by attackers able to access the postgresql account to escalate their privileges to root. | |
| Modificada | Alta (7) | 0.48% | — | PostgresqlDebian LinuxCanonical Ubuntu LinuxRedhat Cloudforms | 9/2/2018 | 17/6/2026 | In postgresql 9.3.x before 9.3.21, 9.4.x before 9.4.16, 9.5.x before 9.5.11, 9.6.x before 9.6.7 and 10.x before 10.2, pg_upgrade creates file in current working directory containing the output of `pg_dumpall -g` under umask which was in effect when the user invoked pg_upgrade, and not under 0077 which is normally used… | |
| Modificada | Media (6.5) | 1.8% | — | Postgresql | 9/2/2018 | 17/6/2026 | Memory disclosure vulnerability in table partitioning was found in postgresql 10.x before 10.2, allowing an authenticated attacker to read arbitrary bytes of server memory via purpose-crafted insert to a partitioned table. | |
| Modificada | Alta (7.8) | 0.42% | — | Debian Postgresql-common | 5/12/2017 | 17/6/2026 | The pg_ctlcluster script in postgresql-common package in Debian wheezy before 134wheezy5, in Debian jessie before 165+deb8u2, in Debian unstable before 178, in Ubuntu 12.04 LTS before 129ubuntu1.2, in Ubuntu 14.04 LTS before 154ubuntu1.1, in Ubuntu 16.04 LTS before 173ubuntu0.1, in Ubuntu 17.04 before 179ubuntu0.1,… | |
| Modificada | Media (6.7) | 0.59% | — | Postgresql | 22/11/2017 | 17/6/2026 | PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, 9.5.x before 9.5.10, 9.4.x before 9.4.15, 9.3.x before 9.3.20, and 9.2.x before 9.2.24 runs under a non-root operating system account, and database superusers have effective ability to run arbitrary code under that system account. PostgreSQL provides a script for… | |
| Modificada | Media (6.5) | 6.3% | — | PostgresqlDebian Linux | 22/11/2017 | 17/6/2026 | INSERT ... ON CONFLICT DO UPDATE commands in PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, and 9.5.x before 9.5.10 disclose table contents that the invoker lacks privilege to read. These exploits affect only tables where the attacker lacks full read access but has both INSERT and UPDATE privileges. Exploits bypass… | |
| Modificada | Alta (8.1) | 3.7% | — | PostgresqlDebian Linux | 22/11/2017 | 17/6/2026 | Invalid json_populate_recordset or jsonb_populate_recordset function calls in PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, 9.5.x before 9.5.10, 9.4.x before 9.4.15, and 9.3.x before 9.3.20 can crash the server or disclose a few bytes of server memory. | |
| Modificada | Media (5.5) | 0.42% | — | Postgresql | 13/11/2017 | 17/6/2026 | The Debian pg_ctlcluster, pg_createcluster, and pg_upgradecluster scripts, as distributed in the Debian postgresql-common package before 181+deb9u1 for PostgreSQL (and other packages related to Debian and Ubuntu), handled symbolic links insecurely, which could result in local denial of service by overwriting arbitrary… |