Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Tue, 17 Mar 2009 12:48:02 -0400 (EDT)
From: "Steven M. Christey" <coley@...us.mitre.org>
To: oss-security@...ts.openwall.com
cc: "Steven M. Christey" <coley@...us.mitre.org>
Subject: Re: CVE request -- postgresql


======================================================
Name: CVE-2009-0922
Status: Candidate
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0922
Reference: MLIST:[oss-security] 20090311 CVE request -- postgresql
Reference: URL:http://www.openwall.com/lists/oss-security/2009/03/11/4
Reference: MLIST:[pgsql-bugs] 20090227 BUG #4680: Server crashed if using wrong (mismatch) conversion functions
Reference: URL:http://archives.postgresql.org/pgsql-bugs/2009-02/msg00172.php
Reference: MLIST:[pgsql-bugs] 20090227 Re: BUG #4680: Server crashed if using wrong (mismatch) conversion functions
Reference: URL:http://archives.postgresql.org//pgsql-bugs/2009-02/msg00176.php
Reference: CONFIRM:http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=517405
Reference: CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=488156

PostgreSQL 8.3.6 allows remote authenticated users to cause a denial
of service (stack consumption) via mismatched encoding conversion
requests.


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.