CVE-2010-1975
Publication date 18 May 2010
Last updated 24 July 2024
Ubuntu priority
PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before 8.1.21, 8.2 before 8.2.17, 8.3 before 8.3.11, and 8.4 before 8.4.4 does not properly check privileges during certain RESET ALL operations, which allows remote authenticated users to remove arbitrary parameter settings via a (1) ALTER USER or (2) ALTER DATABASE statement.
Status
Package | Ubuntu Release | Status |
---|---|---|
postgresql-7.4 | ||
postgresql-8.0 | ||
postgresql-8.1 | ||
postgresql-8.2 | ||
postgresql-8.3 | ||
postgresql-8.4 | ||