Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Safe (aka Safe.pm) module 2.26, and certain earlier versions, for Perl, as used in PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before 8.1.21, 8.2 before 8.2.17, 8.3 before 8.3.11, 8.4 before 8.4.4, and 9.0 Beta before 9.0 Beta 2, allows context-dependent attackers to bypass intended (1) Safe::reval and (2) Safe::rdo access restrictions, and inject and execute arbitrary code, via vectors involving subroutine references and delayed execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PostgreSQL PL/perl程序访问限制绕过漏洞
Vulnerability Description
PostgreSQL是一款高级对象-关系型数据库管理系统,支持扩展的SQL标准子集。 在PostgreSQL 7.4.29之前的7.4版本,8.0.25之前的8.0版本,8.1.21之前的8.1版本,8.2.17之前的8.2版本,8.3.11之前的8.3版本,8.4.4之前的8.4版本,以及9.0 Beta 2之前的9.0 Beta版本中使用的Safe(Safe.pm)模块没有正确限制PL/perl程序。远程攻击者可借助与子程序参考和延时执行有关的向量绕过Safe::reval和Safe::rdo访问限制
CVSS Information
N/A
Vulnerability Type
N/A