CVE-2004-0977

Description

The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files.

Risk Information

Base Score
7.7
MODERATE
Vector
AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
EPSS Score
Exploitation Probability
0.088

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2004-0977 are affected in Postgresql 7.4.5Windows
Vulnerabilities CVE-2004-0977 are fixed in PostgreSQL 7.4.6Windows
Vulnerabilities CVE-2004-0977 are fixed in PostgreSQL 7.3.8Windows
Vulnerability CVE-2004-0977 are affected in Postgresql 7.4.5 (For Linux)Linux
Vulnerabilities CVE-2004-0977 are fixed in PostgreSQL 7.4.6 (For Linux)Linux
Vulnerabilities CVE-2004-0977 are fixed in PostgreSQL 7.3.8 (For Linux)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234