Vulnerability Description
PostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Postgresql | Postgresql | >= 7.3, < 7.3.18 |
References
- ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.ascThird Party Advisory
- http://fedoranews.org/cms/node/2554Third Party Advisory
- http://lists.rpath.com/pipermail/security-announce/2007-February/000141.htmlBroken Link
- http://osvdb.org/33087Broken Link
- http://secunia.com/advisories/24028Broken Link
- http://secunia.com/advisories/24033Broken Link
- http://secunia.com/advisories/24042Broken Link
- http://secunia.com/advisories/24050Broken Link
- http://secunia.com/advisories/24057Broken Link
- http://secunia.com/advisories/24094Broken Link
- http://secunia.com/advisories/24151Broken Link
- http://secunia.com/advisories/24158Broken Link
- http://secunia.com/advisories/24284Broken Link
- http://secunia.com/advisories/24315Broken Link
- http://secunia.com/advisories/24513Broken Link
FAQ
What is CVE-2007-0555?
CVE-2007-0555 is a vulnerability with a CVSS score of 8.5 (HIGH). PostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, whic...
How severe is CVE-2007-0555?
CVE-2007-0555 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-0555?
Check the references section above for vendor advisories and patch information. Affected products include: Postgresql Postgresql.