Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via superuser writing password to unprotected temporary file.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-10210 | Issue Tracking Third Party Advisory |
https://www.postgresql.org/about/news/1960/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
28 Oct 2021, 12:13
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-522 | |
References | (CONFIRM) https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-10210 - Issue Tracking, Third Party Advisory |
Information
Published : 2019-10-29 19:15
Updated : 2024-02-04 20:39
NVD link : CVE-2019-10210
Mitre link : CVE-2019-10210
CVE.ORG link : CVE-2019-10210
JSON object : View
Products Affected
postgresql
- postgresql
microsoft
- windows
CWE
CWE-522
Insufficiently Protected Credentials