4.6
CVSSv2

CVE-2002-1398

Published: 17/01/2003 Updated: 18/10/2016
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the date parser for PostgreSQL prior to 7.2.2 allows malicious users to cause a denial of service and possibly execute arbitrary code via a long date string, aka a vulnerability "in handling long datetime input."

Vulnerable Product Search on Vulmon Subscribe to Product

postgresql postgresql 6.5.3

postgresql postgresql 7.0.3

postgresql postgresql 6.3.2

postgresql postgresql 7.2

postgresql postgresql 7.2.1

postgresql postgresql 7.1.2

postgresql postgresql 7.1.3

postgresql postgresql 7.1

postgresql postgresql 7.1.1

Vendor Advisories

Mordred Labs and others found several vulnerabilities in PostgreSQL, an object-relational SQL database They are inherited from several buffer overflows and integer overflows Specially crafted long date and time input, currency, repeat data and long timezone names could cause the PostgreSQL server to crash as well as specially crafted input data f ...