Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

21 – 27 of 27 results


CVE-2010-0442

Medium priority

Some fixes available 8 of 13

The bitsubstr function in backend/utils/adt/varbit.c in PostgreSQL 8.0.23, 8.1.11, and 8.3.8 allows remote authenticated users to cause a denial of service (daemon crash) or have unspecified other impact via vectors involving a...

6 affected packages

postgresql-7.4, postgresql-8.0, postgresql-8.1, postgresql-8.2, postgresql-8.3, postgresql-8.4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-7.4
postgresql-8.0
postgresql-8.1
postgresql-8.2
postgresql-8.3
postgresql-8.4
Show less packages

CVE-2009-4136

Medium priority

Some fixes available 5 of 9

PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8.4.x before 8.4.2 does not properly manage session-local state during execution of an index function by a...

6 affected packages

postgresql-7.4, postgresql-8.0, postgresql-8.1, postgresql-8.2, postgresql-8.3, postgresql-8.4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-7.4
postgresql-8.0
postgresql-8.1
postgresql-8.2
postgresql-8.3
postgresql-8.4
Show less packages

CVE-2009-4034

Medium priority

Some fixes available 5 of 9

PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8.4.x before 8.4.2 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN)...

6 affected packages

postgresql-7.4, postgresql-8.0, postgresql-8.1, postgresql-8.2, postgresql-8.3, postgresql-8.4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-7.4
postgresql-8.0
postgresql-8.1
postgresql-8.2
postgresql-8.3
postgresql-8.4
Show less packages

CVE-2009-3231

Low priority
Fixed

The core server component in PostgreSQL 8.3 before 8.3.8 and 8.2 before 8.2.14, when using LDAP authentication with anonymous binds, allows remote attackers to bypass authentication via an empty password.

1 affected packages

postgresql-8.3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-8.3
Show less packages

CVE-2009-3230

Medium priority
Fixed

The core server component in PostgreSQL 8.4 before 8.4.1, 8.3 before 8.3.8, 8.2 before 8.2.14, 8.1 before 8.1.18, 8.0 before 8.0.22, and 7.4 before 7.4.26 does not use the appropriate privileges for the (1) RESET ROLE and (2)...

2 affected packages

postgresql-8.1, postgresql-8.3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-8.1
postgresql-8.3
Show less packages

CVE-2009-3229

Medium priority
Fixed

The core server component in PostgreSQL 8.4 before 8.4.1, 8.3 before 8.3.8, and 8.2 before 8.2.14 allows remote authenticated users to cause a denial of service (backend shutdown) by "re-LOAD-ing" libraries from a certain plugins...

1 affected packages

postgresql-8.3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-8.3
Show less packages

CVE-2009-0922

Medium priority

Some fixes available 3 of 8

PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of service (stack consumption and crash) by triggering a failure in the conversion of a localized error message to a...

5 affected packages

postgresql-7.4, postgresql-8.0, postgresql-8.1, postgresql-8.2, postgresql-8.3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
postgresql-7.4
postgresql-8.0
postgresql-8.1
postgresql-8.2
postgresql-8.3
Show less packages