CVE编号
CVE-2010-0442利用情况
POC 已公开补丁情况
官方补丁披露时间
2010-02-03漏洞描述
Postgre SQL8.0.23、8.1.11和8.3.8中后端/utils/adt/varbit.c中的Bitsubstr函数允许远程身份验证的用户通过涉及第三个参数中的负整数的向量导致拒绝服务(守护进程崩溃)或产生未指定的其他影响,SELECT语句中包含对与“溢出”相关的位字符串的子字符串函数的调用。解决建议
建议您更新当前系统或软件至最新版,完成漏洞的修复。
参考链接 |
|
---|---|
http://archives.postgresql.org/pgsql-committers/2010-01/msg00125.php | |
http://archives.postgresql.org/pgsql-hackers/2010-01/msg00634.php | |
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567058 | |
http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=75dea10196c31d98... | |
http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=b15087cb39ca9e4b... | |
http://intevydis.blogspot.com/2010/01/postgresql-8023-bitsubstr-overflow.html | |
http://secunia.com/advisories/39566 | |
http://secunia.com/advisories/39820 | |
http://secunia.com/advisories/39939 | |
http://securitytracker.com/id?1023510 | |
http://ubuntu.com/usn/usn-933-1 | |
http://www.debian.org/security/2010/dsa-2051 | |
http://www.mandriva.com/security/advisories?name=MDVSA-2010:103 | |
http://www.openwall.com/lists/oss-security/2010/01/27/5 | |
http://www.redhat.com/support/errata/RHSA-2010-0427.html | |
http://www.redhat.com/support/errata/RHSA-2010-0428.html | |
http://www.redhat.com/support/errata/RHSA-2010-0429.html | |
http://www.securityfocus.com/bid/37973 | |
http://www.vupen.com/english/advisories/2010/1022 | |
http://www.vupen.com/english/advisories/2010/1197 | |
http://www.vupen.com/english/advisories/2010/1207 | |
http://www.vupen.com/english/advisories/2010/1221 | |
https://bugzilla.redhat.com/show_bug.cgi?id=559194 | |
https://bugzilla.redhat.com/show_bug.cgi?id=559259 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/55902 | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.ova... |
受影响软件情况
# | 类型 | 厂商 | 产品 | 版本 | 影响面 | ||||
1 | |||||||||
---|---|---|---|---|---|---|---|---|---|
运行在以下环境 | |||||||||
应用 | postgresql | postgresql | 8.0.23 | - | |||||
运行在以下环境 | |||||||||
应用 | postgresql | postgresql | 8.1.11 | - | |||||
运行在以下环境 | |||||||||
应用 | postgresql | postgresql | 8.3.8 | - | |||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-contrib | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-devel | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-docs | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-libs | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-pl | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-python | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-server | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-tcl | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | centos_5 | postgresql-test | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-contrib | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-devel | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-docs | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-libs | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-pl | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-python | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-server | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-tcl | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle linux_5 | postgresql-test | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | oracle_5 | postgresql-contrib | * |
Up to (excluding) 8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | redhat_5 | postgresql | * |
Up to (excluding) 0:8.1.21-1.el5_5.1 |
|||||
运行在以下环境 | |||||||||
系统 | sles_11 | postgresql | * |
Up to (excluding) 8.3.14-0.2 |
|||||
- 攻击路径 本地
- 攻击复杂度 容易
- 权限要求 无需权限
- 影响范围 有限影响
- EXP成熟度 POC 已公开
- 补丁情况 官方补丁
- 数据保密性 无影响
- 数据完整性 无影响
- 服务器危害 DoS
- 全网数量 N/A
还没有评论,来说两句吧...