Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The build_tablename function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP through 5.6.7 does not validate token extraction for table names, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP PostgreSQL扩展拒绝服务漏洞
Vulnerability Description
PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。PostgreSQL(又名pgsql)是其中的一个对象关系型数据库管理系统扩展组件。 PHP 5.6.7及之前版本的PostgreSQL扩展中的pgsql.c文件中的‘build_tablename’函数存在安全漏洞,该漏洞源于程序没有正确验证表单名称的‘token’参数提取。远程攻击者可借助特制的名称利用该漏洞造成拒绝服务(空指针逆向引用和应用
CVSS Information
N/A
Vulnerability Type
N/A