CVE-2016-0766

Source
https://nvd.nist.gov/vuln/detail/CVE-2016-0766
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-0766.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2016-0766
Related
Published
2016-02-17T15:59:01Z
Modified
2024-09-03T00:55:46.452953Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

References

Affected packages

Git / git.postgresql.org/git/postgresql.git

Affected ranges

Type
GIT
Repo
https://git.postgresql.org/git/postgresql.git
Events
Introduced
1f43001424a9da624a89b213d0be606a8212a50a
Fixed
3dca6f36fcd694c8c49d26e7c4971194dee2754a

Affected versions

Other

REL9_1_0
REL9_1_1
REL9_1_10
REL9_1_11
REL9_1_12
REL9_1_13
REL9_1_14
REL9_1_15
REL9_1_16
REL9_1_17
REL9_1_18
REL9_1_19
REL9_1_2
REL9_1_3
REL9_1_4
REL9_1_5
REL9_1_6
REL9_1_7
REL9_1_8
REL9_1_9