CVE-2018-1058 log
Source |
|
Severity | High |
Remote | Yes |
Type | Privilege escalation |
Description | A flaw was found in the way Postgresql allowed a user to modify the behavior of a query for other users. An attacker with a user account could use this flaw to execute code with the permissions of superuser in the database. Versions 9.3 through 10 are affected. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-643 | postgresql | 10.2-1 | 10.3-1 | High | Fixed |
Date | Advisory | Group | Package | Severity | Type |
---|---|---|---|---|---|
11 Mar 2018 | ASA-201803-9 | AVG-643 | postgresql | High | privilege escalation |
References |
---|
https://www.postgresql.org/about/news/1834/ https://wiki.postgresql.org/wiki/A_Guide_to_CVE-2018-1058:_Protect_Your_Search_Path |