PT-2018-3147 · Postgresql+2 · Postgresql+2

Pedro Sampaio

·

Published

2018-05-09

·

Updated

2024-06-15

·

CVE-2018-1115

CVSS v2.0

9.4

Critical

VectorAV:N/AC:L/Au:N/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions PostgreSQL versions prior to 10.4 PostgreSQL versions prior to 9.6.9
Description The issue is related to insufficient access control in the pg catalog.pg logfile rotate() function of the adminpack extension in PostgreSQL. This can be exploited by a remote attacker to impact the integrity of protected information or cause a denial of service. The pg catalog.pg logfile rotate() function does not follow the same access control lists (ACLs) as pg rotate logfile. If the adminpack is added to a database, an attacker who can connect to it may exploit this to force log rotation.
Recommendations For versions prior to 10.4, update to version 10.4 or later to resolve the issue. For versions prior to 9.6.9, update to version 9.6.9 or later to resolve the issue. As a temporary workaround, consider restricting access to the pg catalog.pg logfile rotate() function to minimize the risk of exploitation.

Fix

Incorrect Permission

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1682
ALT-PU-2018-1683
ALT-PU-2018-1684
ALT-PU-2018-1685
ALT-PU-2018-1686
ALT-PU-2018-1687
BDU:2019-04242
CVE-2018-1115
MGASA-2018-0446
OPENSUSE-SU-2018_1709-1
OPENSUSE-SU-2018_1900-1
OPENSUSE-SU-2018_2599-1
OPENSUSE-SU-2020:1227-1
OPENSUSE-SU-2020_1227-1
OPENSUSE-SU-2024:11184-1
RHSA-2018:2565
RHSA-2018:2566
SUSE-SU-2018:1695-1
SUSE-SU-2018:2564-1
SUSE-SU-2018_1695-1

Affected Products

Alt Linux
Postgresql
Suse