PostgreSQL 'contrib/pgcrypto' Functions Information Disclosure Weakness
BID:58879
Info
PostgreSQL 'contrib/pgcrypto' Functions Information Disclosure Weakness
| Bugtraq ID: | 58879 |
| Class: | Design Error |
| CVE: |
CVE-2013-1900 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 04 2013 12:00AM |
| Updated: | Apr 13 2015 09:46PM |
| Credit: | Marko Kreen |
| Vulnerable: |
Ubuntu Ubuntu Linux 8.04 LTS sparc Ubuntu Ubuntu Linux 8.04 LTS powerpc Ubuntu Ubuntu Linux 8.04 LTS lpia Ubuntu Ubuntu Linux 8.04 LTS i386 Ubuntu Ubuntu Linux 8.04 LTS amd64 Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 SuSE SUSE Linux Enterprise Server for VMware 11 SP2 SuSE SUSE Linux Enterprise Server 11 SP2 SuSE SUSE Linux Enterprise Desktop 11 SP2 SuSE openSUSE 12.1 SuSE openSUSE 11.4 RedHat Enterprise Linux Desktop Workstation 5 client Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux 5 Server PostgreSQL PostgreSQL 9.0 PostgreSQL PostgreSQL 9.2 PostgreSQL PostgreSQL 9.1 PostgreSQL PostgreSQL 8.4 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 CentOS CentOS 5 Avaya Conferencing Standard Edition 6.0 SP1 Avaya Conferencing Standard Edition 6.0 Avaya Aura Communication Manager Utility Services 6.2 Avaya Aura Communication Manager Utility Services 6.1 Avaya Aura Communication Manager Utility Services 6.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 6.1.1 Avaya Aura Application Enablement Services 6.1 Avaya Aura Application Enablement Services 5.2.3 Avaya Aura Application Enablement Services 5.2.2 Avaya Aura Application Enablement Services 5.2 |
| Not Vulnerable: | |
Exploit / POC
PostgreSQL 'contrib/pgcrypto' Functions Information Disclosure Weakness
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
PostgreSQL 'contrib/pgcrypto' Functions Information Disclosure Weakness
References:
References:
- E.1. Release 9.2.4 (PostgreSQL)
- PostgreSQL 9.2.4, 9.1.9, 9.0.13 and 8.4.17 released (PostgreSQL)
- PostgreSQL Homepage (PostgreSQL)
- PostgreSQL Security Information (PostgreSQL )
- About the security content of OS X Mountain Lion v10.8.5 and Security Update 201 (Apple)
- APPLE-SA-2013-09-17-1: About the security content of OS X Server v2.2.2 (Apple)
- postgresql and postgresql84 security update (RHSA-2013-1475) (Avaya)
- VMSA-2013-0005 VMware vFabric Postgres security updates (VMware)