CRITICAL
A remote code execution vulnerability was found within the pg module when the remote database or query specifies a specially crafted column name
Published Jun 7, 2018
9.8
CRITICALCVSS 3.0
EPSS 10.52%
Description
A remote code execution vulnerability was found within the pg module when the remote database or query specifies a specially crafted column name. There are 2 likely scenarios in which one would likely be vulnerable. 1) Executing unsafe, user-supplied sql which contains a malicious column name. 2) Connecting to an untrusted database and executing a query which returns results where any of the column names are malicious.
Affected products
-
- Version < 2.11.2 || >= 3.0.0 < 3.6.4 || >= 4.0.0 < 4.5.7 || >= 5.0.0 < 5.2.1 || >= 6.0.0 < 6.0.5 || >= 6.1.0 < 6.1.6 || >= 6.2.0 < 6.2.5 || >= 6.3.0 < 6.3.3 || >= 6.4.0 < 6.4.2 || >= 7.0.0 < 7.0.2 || >= 7.1.0 < 7.1.2StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| HackerOne | PG Node Module | n/a |
|
OR
- ≥ 2.0.0 · < 2.11.2
- ≥ 3.0.0 · < 3.6.4
- ≥ 4.0.0 · < 4.5.7
- > 5.0.0 · < 5.2.1
- ≥ 6.0.0 · < 6.4.2
- ≥ 7.0.0 · < 7.1.2
No data.
No Red Hat product state for this CVE.
pg
npm
Introduced 6.3.0 Fixed 6.3.3pg
npm
Introduced 6.4.0 Fixed 6.4.2pg
npm
Introduced 7.0.0 Fixed 7.0.2pg
npm
Introduced 5.0.0 Fixed 5.2.1pg
npm
Introduced 6.0.0 Fixed 6.0.5pg
npm
Introduced 6.1.0 Fixed 6.1.6pg
npm
Introduced 6.2.0 Fixed 6.2.5pg
npm
Introduced 7.1.0 Fixed 7.1.2pg
npm
Introduced 0 Fixed 2.11.2pg
npm
Introduced 3.0.0 Fixed 3.6.4pg
npm
Introduced 4.0.0 Fixed 4.5.7
| Ecosystem | Package | Introduced | Fixed |
|---|---|---|---|
| npm | pg | 6.3.0 | 6.3.3 |
| npm | pg | 6.4.0 | 6.4.2 |
| npm | pg | 7.0.0 | 7.0.2 |
| npm | pg | 5.0.0 | 5.2.1 |
| npm | pg | 6.0.0 | 6.0.5 |
| npm | pg | 6.1.0 | 6.1.6 |
| npm | pg | 6.2.0 | 6.2.5 |
| npm | pg | 7.1.0 | 7.1.2 |
| npm | pg | 0 | 2.11.2 |
| npm | pg | 3.0.0 | 3.6.4 |
| npm | pg | 4.0.0 | 4.5.7 |
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- https://github.com/advisories/GHSA-wc9v-mj63-m9g5 Advisory
- https://node-postgres.com/announcements#2017-08-12-code-execution-vulnerability x_refsource_MISCExploitThird Party Advisory
- https://nodesecurity.io/advisories/521 x_refsource_MISCExploitThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2017-16082
- https://www.npmjs.com/advisories/521
| Link | Providers | Tags |
|---|---|---|
| https://github.com/advisories/GHSA-wc9v-mj63-m9g5 | Advisory | |
| https://node-postgres.com/announcements#2017-08-12-code-execution-vulnerability | x_refsource_MISCExploitThird Party Advisory | |
| https://nodesecurity.io/advisories/521 | x_refsource_MISCExploitThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2017-16082 | ||
| https://www.npmjs.com/advisories/521 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner hackerone
Published Jun 7, 2018
Updated Sep 17, 2024
Reserved Oct 29, 2017
Link CVE-2017-16082
CISA Vulnrichment
GHSA-WC9V-MJ63-M9G5 Updated n/a