A flaw was found in postgresql. Using an UPDATE ... RETURNING command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-4915-1 | postgresql-11 security update |
EUVD |
EUVD-2021-18895 | A flaw was found in postgresql. Using an UPDATE ... RETURNING command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality. |
Ubuntu USN |
USN-4972-1 | PostgreSQL vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T23:17:29.448Z
Reserved: 2021-05-04T00:00:00.000Z
Link: CVE-2021-32029
No data.
Status : Modified
Published: 2021-10-08T17:15:07.493
Modified: 2024-11-21T06:06:44.717
Link: CVE-2021-32029
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN