CVE-2009-3229

The core server component in PostgreSQL 8.4 before 8.4.1, 8.3 before 8.3.8, and 8.2 before 8.2.14 allows remote authenticated users to cause a denial of service (backend shutdown) by "re-LOAD-ing" libraries from a certain plugins directory.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.html
http://marc.info/?l=bugtraq&m=134124585221119&w=2
http://marc.info/?l=bugtraq&m=134124585221119&w=2
http://secunia.com/advisories/36660 Vendor Advisory
http://secunia.com/advisories/36727 Vendor Advisory
http://secunia.com/advisories/36800
http://secunia.com/advisories/36837
http://sunsolve.sun.com/search/document.do?assetkey=1-66-270408-1
http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0012
http://www.postgresql.org/docs/8.3/static/release-8-3-8.html
http://www.postgresql.org/support/security.html Vendor Advisory
http://www.securityfocus.com/archive/1/509917/100/0/threaded
http://www.securityfocus.com/bid/36314
http://www.ubuntu.com/usn/usn-834-1
http://www.us.debian.org/security/2009/dsa-1900
https://bugzilla.redhat.com/show_bug.cgi?id=522092
https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00305.html
https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00307.html
http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.html
http://marc.info/?l=bugtraq&m=134124585221119&w=2
http://marc.info/?l=bugtraq&m=134124585221119&w=2
http://secunia.com/advisories/36660 Vendor Advisory
http://secunia.com/advisories/36727 Vendor Advisory
http://secunia.com/advisories/36800
http://secunia.com/advisories/36837
http://sunsolve.sun.com/search/document.do?assetkey=1-66-270408-1
http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0012
http://www.postgresql.org/docs/8.3/static/release-8-3-8.html
http://www.postgresql.org/support/security.html Vendor Advisory
http://www.securityfocus.com/archive/1/509917/100/0/threaded
http://www.securityfocus.com/bid/36314
http://www.ubuntu.com/usn/usn-834-1
http://www.us.debian.org/security/2009/dsa-1900
https://bugzilla.redhat.com/show_bug.cgi?id=522092
https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00305.html
https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00307.html
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:postgresql:postgresql:8.2:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.1:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.2:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.3:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.4:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.5:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.6:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.7:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.8:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.9:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.10:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.11:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.12:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.2.13:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.1:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.2:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.3:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.4:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.5:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.6:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.3.7:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:8.4:*:*:*:*:*:*:*

History

21 Nov 2024, 01:06

Type Values Removed Values Added
References () http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html - () http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html -
References () http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.html - () http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.html -
References () http://marc.info/?l=bugtraq&m=134124585221119&w=2 - () http://marc.info/?l=bugtraq&m=134124585221119&w=2 -
References () http://secunia.com/advisories/36660 - Vendor Advisory () http://secunia.com/advisories/36660 - Vendor Advisory
References () http://secunia.com/advisories/36727 - Vendor Advisory () http://secunia.com/advisories/36727 - Vendor Advisory
References () http://secunia.com/advisories/36800 - () http://secunia.com/advisories/36800 -
References () http://secunia.com/advisories/36837 - () http://secunia.com/advisories/36837 -
References () http://sunsolve.sun.com/search/document.do?assetkey=1-66-270408-1 - () http://sunsolve.sun.com/search/document.do?assetkey=1-66-270408-1 -
References () http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0012 - () http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0012 -
References () http://www.postgresql.org/docs/8.3/static/release-8-3-8.html - () http://www.postgresql.org/docs/8.3/static/release-8-3-8.html -
References () http://www.postgresql.org/support/security.html - Vendor Advisory () http://www.postgresql.org/support/security.html - Vendor Advisory
References () http://www.securityfocus.com/archive/1/509917/100/0/threaded - () http://www.securityfocus.com/archive/1/509917/100/0/threaded -
References () http://www.securityfocus.com/bid/36314 - () http://www.securityfocus.com/bid/36314 -
References () http://www.ubuntu.com/usn/usn-834-1 - () http://www.ubuntu.com/usn/usn-834-1 -
References () http://www.us.debian.org/security/2009/dsa-1900 - () http://www.us.debian.org/security/2009/dsa-1900 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=522092 - () https://bugzilla.redhat.com/show_bug.cgi?id=522092 -
References () https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00305.html - () https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00305.html -
References () https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00307.html - () https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00307.html -

Information

Published : 2009-09-17 10:30

Updated : 2025-04-09 00:30


NVD link : CVE-2009-3229

Mitre link : CVE-2009-3229

CVE.ORG link : CVE-2009-3229


JSON object : View

Products Affected

postgresql

  • postgresql