756
VMScore

CVE-2016-3065

Published: 11/04/2016 Updated: 07/11/2023
CVSS v2 Base Score: 8.5 | Impact Score: 7.8 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 756
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:C

Vulnerability Summary

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL prior to 9.5.x prior to 9.5.2 allows malicious users to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page.

Vulnerable Product Search on Vulmon Subscribe to Product

postgresql postgresql 9.5.1

postgresql postgresql 9.5

Vendor Advisories

The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 95x before 952 allows attackers to bypass intended access restrictions and consequently obtain sensitive server memory information or cause a denial of service (server crash) via a crafted bytea value in a BRIN index page ...