PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated users to have an unspecified impact via vectors related to the "contrib/pgcrypto functions."
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Information
Published : 2013-04-04 10:55
Updated : 2017-10-19 18:29
NVD link : CVE-2013-1900
Mitre link : CVE-2013-1900
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
canonical
- ubuntu_linux
postgresql
- postgresql