CVE-2017-7546 log

Severity Medium
Remote Yes
Type Authentication bypass
It was found that authenticating to a PostgreSQL database account with an empty password was possible despite libpq's refusal to send an empty password. A remote attacker could potentially use this flaw to gain access to database accounts with empty passwords.
Group Package Affected Fixed Severity Status Ticket
AVG-381 postgresql 9.6.3-3 9.6.4-1 High Fixed
Date Advisory Group Package Severity Type
06 Sep 2017 ASA-201709-2 AVG-381 postgresql High multiple issues