CVE-2017-7548
16.08.2017, 18:29
PostgreSQL versions before 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attackers with no privileges on a large object to overwrite the entire contents of the object, resulting in a denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
postgresql | postgresql | 9.4 ≤ 𝑥 < 9.4.13 |
postgresql | postgresql | 9.5 ≤ 𝑥 < 9.5.8 |
postgresql | postgresql | 9.6 ≤ 𝑥 < 9.6.4 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
postgresql-10 |
| ||||||||||||||
postgresql-9.1 |
| ||||||||||||||
postgresql-9.3 |
| ||||||||||||||
postgresql-9.5 |
| ||||||||||||||
postgresql-9.6 |
|
Common Weakness Enumeration
References