PostgreSQL 8.3.x before 8.3.19, 8.4.x before 8.4.12, 9.0.x before 9.0.8, and 9.1.x before 9.1.4 allows remote authenticated users to cause a denial of service (server crash) by adding the (1) SECURITY DEFINER or (2) SET attributes to a procedural language's call handler.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2012-07-18 16:55
Updated : 2013-04-18 20:22
NVD link : CVE-2012-2655
Mitre link : CVE-2012-2655
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
postgresql
- postgresql