Description
PostgreSQL versions 10.x before 10.9 and versions 11.x before 11.4 are vulnerable to a stack-based buffer overflow. Any authenticated user can overflow a stack-based buffer by changing the user's own password to a purpose-crafted value. This often suffices to execute arbitrary code as the PostgreSQL operating system account.
Remediation
References
Related Vulnerabilities
Jenkins Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2023-27901)
PHP Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2014-3981)
MySQL CVE-2022-21486 Vulnerability (CVE-2022-21486)
ownCloud Other Vulnerability (CVE-2022-25338)
WordPress Plugin BSDev.at-Importer:Serendipity Cross-Site Scripting (0.0.1)