V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2016-0773
DEB
High

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to c…

CVSS
7.5
High
EPSS
0.07
p93
Published
2016-01-01
Updated
2016-01-01
Description

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

Tags · CWE
RCEPre-auth
CWE-119
CWE-190
CAPEC-8
CAPEC-9
CAPEC-10
CAPEC-14
CAPEC-24
CAPEC-42
CAPEC-44
CAPEC-45
CAPEC-46
CAPEC-47
CAPEC-92
CAPEC-100
CAPEC-123
Affected products
PostgresqlPostgresqlPostgresql-9.1Postgresql-9.1Postgresql-9.1Postgresql-9.3Postgresql-9.4Postgresql-9.4Postgresql-9.4Postgresql-9.5Postgresql-9.5Postgresql-9.5Postgresql92-postgresqlPostgresql92-postgresqlPostgresql92-postgresqlPostgresql92-postgresqlPostgresql92-postgresqlPostgresql92-postgresqlPostgresql92-postgresqlRh-postgresql94-postgresql
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
2016-01-01
Published
2016-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.070 · p93
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
postgresqlTracked
postgresqlTracked
postgresql-9.1Tracked
postgresql-9.1Tracked
postgresql-9.1Tracked
postgresql-9.3Tracked
postgresql-9.4Tracked
postgresql-9.4Tracked
postgresql-9.4Tracked
postgresql-9.5Tracked
postgresql-9.5Tracked
postgresql-9.5Tracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
postgresql92-postgresqlTracked
rh-postgresql94-postgresqlTracked
Showing first 20 of 28
Source databases
DEB
CVE
RED
UBU
Related vulnerabilities