CVE-2007-0555

NameCVE-2007-0555
DescriptionPostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-1261-1
NVD severityhigh (attack range: remote)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
postgresqlsource(unstable)(not affected)
postgresqlsourcesarge7.4.7-6sarge4highDSA-1261-1
postgresql-7.4source(unstable)1:7.4.16-1high
postgresql-8.1source(unstable)8.1.7-1high
postgresql-8.2source(unstable)8.2.2-1high

Notes

- postgresql <not-affected> (only transitional package)

Search for package or bug name: Reporting problems