Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities HKCERT

PostgreSQL Multiple Vulnerabilities

Multiple vulnerabilities in PostgreSQL, including remote code execution, privilege escalation, denial of service, data manipulation, and information disclosure, can be exploited by a remote attacker. Affected versions include those prior to PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23. The solution is to apply the vendor's fixes by updating to PostgreSQL version 18.4, 17.10, 16.14, 15.18, or 14.23, respectively.
Read Full Article →

Multiple vulnerabilities were identified in PostgreSQL. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, remote code execution, denial of service condition, data manipulation and sensitive information disclosure on the targeted system. Impact Remote Code Execution Information Disclosure Elevation of Privilege Denial of Service Data Manipulation System / Technologies affected PostgreSQL versions prior to 18.4 PostgreSQL versions prior to 17.10 PostgreSQL versions prior to 16.14 PostgreSQL versions prior to 15.18 PostgreSQL versions prior to 14.23 Solutions Before installation of the software, please visit the software vendor web-site for more details. The vendor has issued fixes: Update to PostgreSQL version 18.4 Update to PostgreSQL version 17.10 Update to PostgreSQL version 16.14 Update to PostgreSQL version 15.18 Update to PostgreSQL version 14.23

Share this article