Vulnerability CVE-2018-16850: Information

Description

postgresql before versions 11.1, 10.6 is vulnerable to a to SQL injection in pg_upgrade and pg_dump via CREATE TRIGGER ... REFERENCING. Using a purpose-crafted trigger definition, an attacker can cause arbitrary SQL statements to run, with superuser privileges.

Severity: CRITICAL (9.8) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Published: Nov. 13, 2018
Modified: Jan. 19, 2023
Error type identifier: CWE-89

Fixed packages

References to Advisories, Solutions, and Tools

Hyperlink
Resource
https://www.postgresql.org/about/news/1905/
  • Release Notes
  • Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16850
  • Issue Tracking
  • Patch
  • Third Party Advisory
USN-3818-1
  • Third Party Advisory
1042144
  • Third Party Advisory
  • VDB Entry
105923
  • Third Party Advisory
  • VDB Entry
GLSA-201811-24
  • Mitigation
  • Third Party Advisory
RHSA-2018:3757
  • Third Party Advisory
    1. Configuration 1

      cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:*
      Start including
      10.0
      End excliding
      10.6

      cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:*
      Start including
      11.0
      End excliding
      11.1

      Configuration 2

      cpe:2.3:o:redhat:enterprise_linux:7.4:*:*:*:*:*:*:*

      cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

      cpe:2.3:o:redhat:enterprise_linux:7.5:*:*:*:*:*:*:*

      cpe:2.3:o:redhat:enterprise_linux:7.6:*:*:*:*:*:*:*

      Configuration 3

      cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*