CVE-2015-0241

The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a (1) large number of digits when processing a numeric formatting template, which triggers a buffer over-read, or (2) crafted timestamp formatting template, which triggers a buffer overflow.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
postgresqlpostgresql
𝑥
< 9.0.19
postgresqlpostgresql
9.1.0 ≤
𝑥
< 9.1.15
postgresqlpostgresql
9.2.0 ≤
𝑥
< 9.2.10
postgresqlpostgresql
9.3.0 ≤
𝑥
< 9.3.6
postgresqlpostgresql
9.4.0 ≤
𝑥
< 9.4.1
debiandebian_linux
7.0
debiandebian_linux
8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
postgresql-8.4
zesty
dne
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
precise
ignored
lucid
Fixed 8.4.22-0ubuntu0.10.04.1
released
postgresql-9.1
zesty
dne
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
Fixed 9.1.15-0ubuntu0.14.04
released
precise
Fixed 9.1.15-0ubuntu0.12.04
released
lucid
dne
postgresql-9.3
zesty
dne
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
Fixed 9.3.6-0ubuntu0.14.04
released
precise
dne
lucid
dne
postgresql-9.4
zesty
dne
yakkety
dne
xenial
dne
wily
not-affected
vivid
not-affected
utopic
Fixed 9.4.1-0ubuntu0.14.10
released
trusty
dne
precise
dne
lucid
dne