PostgreSQL Global Development Group / PostgreSQL
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-0241 | postgresql: buffer overflow in the to_char() function | HIGH | 8.8 | Jan 27, 2020 |
| CVE-2015-0242 | postgresql: buffer overflow flaws in replacement *printf() functions | HIGH | 8.8 | Jan 27, 2020 |
| CVE-2015-0243 | postgresql: buffer overflow flaws in contrib/pgcrypto | HIGH | 8.8 | Jan 27, 2020 |
| CVE-2015-0244 | postgresql: loss of frontend/backend protocol synchronization after an error | CRITICAL | 9.8 | Jan 27, 2020 |
| CVE-2014-8161 | postgresql: information leak through constraint violation errors | MEDIUM | 4.3 | Jan 27, 2020 |
| CVE-2015-3166 | postgresql: unanticipated errors from the standard library | CRITICAL | 9.8 | Nov 20, 2019 |
| CVE-2015-3167 | postgresql: pgcrypto has multiple error messages for decryption with an incorrect key. | HIGH | 7.5 | Nov 20, 2019 |
| CVE-2018-10925 | postgresql: Missing authorization and memory disclosure in INSERT ... ON CONFLICT DO UPDATE statements | HIGH | 8.1 | Aug 9, 2018 |
| CVE-2018-10915 | postgresql: Certain host connection parameters defeat client-side security defenses | HIGH | 8.5 | Aug 9, 2018 |
| CVE-2018-1058 | postgresql: Uncontrolled search path element in pg_dump and other client applications | HIGH | 8.8 | Mar 2, 2018 |
| CVE-2018-1053 | postgresql: pg_upgrade creates file of sensitive metadata under prevailing umask | HIGH | 7.0 | Feb 9, 2018 |
| CVE-2018-1052 | postgresql: Memory disclosure in table partitioning | MEDIUM | 6.5 | Feb 9, 2018 |
| CVE-2017-7486 | postgresql: pg_user_mappings view discloses foreign server passwords | HIGH | 7.5 | May 12, 2017 |
| CVE-2017-7485 | postgresql: libpq ignores PGREQUIRESSL environment variable | HIGH | 7.4 | May 12, 2017 |
| CVE-2017-7484 | postgresql: Selectivity estimators bypass SELECT privilege checks | HIGH | 7.5 | May 12, 2017 |
Showing 1 to 10 of 10 CVEs