Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-1115
Description:postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow the same ACLs than pg_rorate_logfile. If the adminpack is added to a database, an attacker able to connect to it could exploit this to force log rotation.
Test IDs: 1.3.6.1.4.1.25623.1.0.874475   1.3.6.1.4.1.25623.1.0.141084   1.3.6.1.4.1.25623.1.0.874591   1.3.6.1.4.1.25623.1.0.851787   1.3.6.1.4.1.25623.1.0.141083   1.3.6.1.4.1.25623.1.0.874590   1.3.6.1.4.1.25623.1.0.851808   1.3.6.1.4.1.25623.1.0.851957   1.3.6.1.4.1.25623.1.1.2.2020.1876   1.3.6.1.4.1.25623.1.1.4.2018.1695.1   1.3.6.1.4.1.25623.1.1.4.2018.2564.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-1115
BugTraq ID: 104285
http://www.securityfocus.com/bid/104285
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1115
https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=7b34740
https://security.gentoo.org/glsa/201810-08
RedHat Security Advisories: RHSA-2018:2565
https://access.redhat.com/errata/RHSA-2018:2565
RedHat Security Advisories: RHSA-2018:2566
https://access.redhat.com/errata/RHSA-2018:2566
SuSE Security Announcement: openSUSE-SU-2020:1227 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00043.html




© 1998-2024 E-Soft Inc. All rights reserved.