|
|
| |
|
| |
postgresql: privilege escalation via LOAD
| Package(s): | postgresql |
CVE #(s): | CAN-2005-0227
|
| Created: | February 1, 2005 |
Updated: | February 7, 2005 |
| Description: |
John Heasman has
discovered a local privilege escalation in the PostgreSQL server. Any
user could use the LOAD extension to load any shared library into the
PostgreSQL server; the library's initialization function was then executed
with the permissions of the server. |
| Alerts: |
|
( Log in to post comments)
|
|
|