Description
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2662-1 | postgresql-9.6 security update |
Debian DSA |
DSA-4915-1 | postgresql-11 security update |
EUVD |
EUVD-2021-18894 | A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality. |
Ubuntu USN |
USN-4972-1 | PostgreSQL vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T23:17:28.199Z
Reserved: 2021-05-04T00:00:00.000Z
Link: CVE-2021-32028
No data.
Status : Modified
Published: 2021-10-11T17:15:07.727
Modified: 2024-11-21T06:06:44.593
Link: CVE-2021-32028
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN