The bitsubstr function in backend/utils/adt/varbit.c in PostgreSQL 8.0.23, 8.1.11, and 8.3.8 allows remote authenticated users to cause a denial of service (daemon crash) or have unspecified other impact via vectors involving a negative integer in the third argument, as demonstrated by a SELECT statement that contains a call to the substring function for a bit string, related to an "overflow."
http://archives.postgresql.org/pgsql-committers/2010-01/msg00125.php
http://archives.postgresql.org/pgsql-hackers/2010-01/msg00634.php
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567058
http://intevydis.blogspot.com/2010/01/postgresql-8023-bitsubstr-overflow.html
http://secunia.com/advisories/39566
http://secunia.com/advisories/39820
http://secunia.com/advisories/39939
http://securitytracker.com/id?1023510
http://ubuntu.com/usn/usn-933-1
http://www.debian.org/security/2010/dsa-2051
http://www.mandriva.com/security/advisories?name=MDVSA-2010:103
http://www.openwall.com/lists/oss-security/2010/01/27/5
http://www.redhat.com/support/errata/RHSA-2010-0427.html
http://www.redhat.com/support/errata/RHSA-2010-0428.html
http://www.redhat.com/support/errata/RHSA-2010-0429.html
http://www.securityfocus.com/bid/37973
http://www.vupen.com/english/advisories/2010/1022
http://www.vupen.com/english/advisories/2010/1197
http://www.vupen.com/english/advisories/2010/1207
http://www.vupen.com/english/advisories/2010/1221
https://bugzilla.redhat.com/show_bug.cgi?id=559194
https://bugzilla.redhat.com/show_bug.cgi?id=559259
https://exchange.xforce.ibmcloud.com/vulnerabilities/55902
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9720
OR
cpe:2.3:a:postgresql:postgresql:8.0.23:*:*:*:*:*:*:*
ID | Name | Product | Family | Severity |
---|---|---|---|---|
68044 | Oracle Linux 5 : postgresql (ELSA-2010-0429) | Nessus | Oracle Linux Local Security Checks | high |
68043 | Oracle Linux 4 : postgresql (ELSA-2010-0428) | Nessus | Oracle Linux Local Security Checks | high |
68042 | Oracle Linux 3 : postgresql (ELSA-2010-0427) | Nessus | Oracle Linux Local Security Checks | high |
60795 | Scientific Linux Security Update : postgresql on SL3.x, SL4.x, SL5.x i386/x86_64 | Nessus | Scientific Linux Local Security Checks | high |
56626 | GLSA-201110-22 : PostgreSQL: Multiple vulnerabilities | Nessus | Gentoo Local Security Checks | high |
46761 | CentOS 5 : postgresql (CESA-2010:0429) | Nessus | CentOS Local Security Checks | high |
46710 | Debian DSA-2051-1 : postgresql-8.3 - several vulnerabilities | Nessus | Debian Local Security Checks | high |
46696 | CentOS 4 : postgresql (CESA-2010:0428) | Nessus | CentOS Local Security Checks | high |
46695 | CentOS 3 : postgresql (CESA-2010:0427) | Nessus | CentOS Local Security Checks | high |
46690 | Mandriva Linux Security Advisory : postgresql (MDVSA-2010:103) | Nessus | Mandriva Local Security Checks | high |
46683 | RHEL 5 : postgresql (RHSA-2010:0429) | Nessus | Red Hat Local Security Checks | high |
46682 | RHEL 4 : postgresql (RHSA-2010:0428) | Nessus | Red Hat Local Security Checks | high |
46681 | RHEL 3 : postgresql (RHSA-2010:0427) | Nessus | Red Hat Local Security Checks | high |
46179 | Ubuntu 6.06 LTS / 8.04 LTS / 9.04 / 9.10 : postgresql-8.1, postgresql-8.3, postgresql-8.4 vulnerability (USN-933-1) | Nessus | Ubuntu Local Security Checks | medium |
45348 | FreeBSD : postgresql -- bitsubstr overflow (e050119b-3856-11df-b2b2-002170daae37) | Nessus | FreeBSD Local Security Checks | medium |