Vulnerabilities > Postgresql > Postgresql > 8.1.8
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-01-09 | CVE-2007-4772 | Resource Management Errors vulnerability in multiple products The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted regular expression. | 4.0 |
2008-01-09 | CVE-2007-4769 | Numeric Errors vulnerability in multiple products The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (backend crash) via an out-of-bounds backref number. | 6.8 |
2007-04-24 | CVE-2007-2138 | Permissions, Privileges, and Access Controls vulnerability in multiple products Untrusted search path vulnerability in PostgreSQL before 7.3.19, 7.4.x before 7.4.17, 8.0.x before 8.0.13, 8.1.x before 8.1.9, and 8.2.x before 8.2.4 allows remote authenticated users, when permitted to call a SECURITY DEFINER function, to gain the privileges of the function owner, related to "search_path settings." | 6.0 |