Description
PostgreSQL versions 10.x before 10.9 and versions 11.x before 11.4 are vulnerable to a stack-based buffer overflow. Any authenticated user can overflow a stack-based buffer by changing the user's own password to a purpose-crafted value. This often suffices to execute arbitrary code as the PostgreSQL operating system account.
Remediation
References
Related Vulnerabilities
Play Framework Inadequate Encryption Strength Vulnerability (CVE-2019-17598)
WordPress Plugin Discount Rules for WooCommerce Security Bypass (2.2.0)
WordPress Plugin White Label CMS PHP Object Injection (2.4)
WordPress Plugin Premmerce Wholesale Pricing for WooCommerce Security Bypass (1.1.3)
markdown-it Inefficient Regular Expression Complexity Vulnerability (CVE-2022-21670)