Back to search
CVE-2009-0922
Published: Mar 17, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of service (stack consumption and crash) by triggering a failure in the conversion of a localized error message to a client-specified encoding, as demonstrated using mismatched encoding conversion requests.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.postgresql.org/about/news.1065
x_refsource_CONFIRM
1021860
vdb-entry
x_refsource_SECTRACK
FEDORA-2009-2959
vendor-advisory
x_refsource_FEDORA
RHSA-2009:1067
vendor-advisory
x_refsource_REDHAT
[pgsql-bugs] 20090227 Re: BUG #4680: Server crashed if using wrong (mismatch) conversion functions
mailing-list
x_refsource_MLIST
34090
vdb-entry
x_refsource_BID
oval:org.mitre.oval:def:10874
vdb-entry
signature
x_refsource_OVAL
HPSBMU02781
vendor-advisory
x_refsource_HP
[oss-security] 20090311 CVE request -- postgresql
mailing-list
x_refsource_MLIST
258808
vendor-advisory
x_refsource_SUNALERT
34453
third-party-advisory
x_refsource_SECUNIA
ADV-2009-0767
vdb-entry
x_refsource_VUPEN
20090519 rPSA-2009-0086-1 postgresql postgresql-contrib postgresql-server
mailing-list
x_refsource_BUGTRAQ
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=517405
x_refsource_CONFIRM
MDVSA-2009:079
vendor-advisory
x_refsource_MANDRIVA
[pgsql-bugs] 20090227 BUG #4680: Server crashed if using wrong (mismatch) conversion functions
mailing-list
x_refsource_MLIST
FEDORA-2009-2927
vendor-advisory
x_refsource_FEDORA
35100
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=488156
x_refsource_CONFIRM
http://wiki.rpath.com/Advisories:rPSA-2009-0086
x_refsource_CONFIRM
ADV-2009-1316
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:6252
vdb-entry
signature
x_refsource_OVAL
SUSE-SR:2009:009
vendor-advisory
x_refsource_SUSE
1020455
vendor-advisory
x_refsource_SUNALERT
SSRT100617
vendor-advisory
x_refsource_HP
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now