Oval Definition:oval:com.ubuntu.precise:def:20131899000
Revision Date:2013-04-04Version:1
Title:CVE-2013-1899 on Ubuntu 12.04 LTS (precise) - high.
Description:Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration settings and execute arbitrary code, via a connection request using a database name that begins with a "-" (hyphen).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-1899
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'postgresql-8.4' package in precise is not affected.
  • OR The 'postgresql-9.1' package in precise was vulnerable but has been fixed (note: '9.1.9-0ubuntu12.04').
  • BACK