Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17273
HistoryMay 02, 2019 - 5:40 a.m.

Authorization Bypass

2019-05-0205:40:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.009 Low

EPSS

Percentile

83.1%

PostgreSQL is vulnerable to authorization bypass. It is because it did not properly check the return values of certain standard library functions. If the system is in a state that would cause the standard library functions to fail, for example memory exhaustion, an authenticated user could exploit this flaw to disclose partial memory contents or cause the GSSAPI authentication to use an incorrect keytab file.