Oval Definition:oval:org.mitre.oval:tst:31669
Comment:postgresql-tcl is earlier than 0:7.4.8-1.RHEL4.1
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14486
State:oval:org.mitre.oval:ste:9748
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9343
V
The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an internal argument, which allows attackers to cause a denial of service (application crash) and possibly have other impacts via SQL commands that call other functions that accept internal arguments.
2013-04-29
oval:org.mitre.oval:def:10050
V
PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impact, aka the "Character conversion vulnerability."
2013-04-29
BACK