CVE-2014-0063
Publication date 21 February 2014
Last updated 24 July 2024
Ubuntu priority
Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via vectors related to an incorrect MAXDATELEN constant and datetime values involving (1) intervals, (2) timestamps, or (3) timezones, a different vulnerability than CVE-2014-0065.
Status
Package | Ubuntu Release | Status |
---|---|---|
postgresql-8.4 | ||
14.04 LTS trusty | Not in release | |
postgresql-9.1 | ||
14.04 LTS trusty |
Fixed 9.1.12-1
|
|
postgresql-9.3 | ||
14.04 LTS trusty |
Fixed 9.3.3-1
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2120-1
- PostgreSQL vulnerabilities
- 24 February 2014