CVE-2005-1409

Description

PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impact, aka the Character conversion vulnerability.

Risk Information

Base Score
9.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
1.196

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2005-1409,CVE-2005-1410 are affected in Postgresql 8.0.2Windows
Vulnerabilities CVE-2005-1410,CVE-2005-1409 are fixed in PostgreSQL 8.0.3Windows
Vulnerabilities CVE-2005-1410,CVE-2005-1409,CVE-2005-0247 are fixed in PostgreSQL 7.4.8Windows
Vulnerabilities CVE-2005-1409,CVE-2005-0245 are fixed in PostgreSQL 7.3.10Windows
Vulnerability CVE-2005-1409,CVE-2005-1410 are affected in Postgresql 8.0.2 (For Linux)Linux
Vulnerabilities CVE-2005-1410,CVE-2005-1409 are fixed in PostgreSQL 8.0.3 (For Linux)Linux
Vulnerabilities CVE-2005-1410,CVE-2005-1409,CVE-2005-0247 are fixed in PostgreSQL 7.4.8 (For Linux)Linux
Vulnerabilities CVE-2005-1409,CVE-2005-0245 are fixed in PostgreSQL 7.3.10 (For Linux)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234