Name | CVE-2019-3466 |
Description | The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DLA-1994-1, DSA-4568-1 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
postgresql-common (PTS) | bullseye | 225+deb11u1 | fixed |
bookworm | 248 | fixed | |
sid, trixie | 267 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
postgresql-common | source | jessie | 165+deb8u4 | DLA-1994-1 | ||
postgresql-common | source | stretch | 181+deb9u3 | DSA-4568-1 | ||
postgresql-common | source | buster | 200+deb10u3 | DSA-4568-1 | ||
postgresql-common | source | (unstable) | 210 |
https://salsa.debian.org/postgresql/postgresql-common/commit/ec9d984b62ed79f61be97b786a9ff4381309979c
https://blog.mirch.io/2019/11/15/cve-2019-3466-debian-ubuntu-pg_ctlcluster-privilege-escalation/