CVE-2005-0244

Description

PostgreSQL 8.0.0 and earlier allows local users to bypass the EXECUTE permission check for functions by using the CREATE AGGREGATE command.

Risk Information

Base Score
7.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
0.836

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2005-0244,CVE-2005-0246 are affected in Postgresql 8.0.0Windows
Vulnerabilities CVE-2005-0246,CVE-2005-0245,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 8.0.1Windows
Vulnerabilities CVE-2005-0246,CVE-2005-0245,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 7.4.7Windows
Vulnerabilities CVE-2005-0246,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 7.3.9Windows
Vulnerability CVE-2005-0244,CVE-2005-0246 are affected in Postgresql 8.0.0 (For Linux)Linux
Vulnerabilities CVE-2005-0246,CVE-2005-0245,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 8.0.1 (For Linux)Linux
Vulnerabilities CVE-2005-0246,CVE-2005-0245,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 7.4.7 (For Linux)Linux
Vulnerabilities CVE-2005-0246,CVE-2005-0244,CVE-2005-0227 are fixed in PostgreSQL 7.3.9 (For Linux)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234