← Back

CVE-2016-5423

nvd nist
Published: Dec 9, 2016Modified: May 6, 2026

JSON object

Loading...
8.3
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Exploitability: 2.8 / Impact: 5.5
Source: NVD

Description

PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow remote authenticated users to cause a denial of service (NULL pointer dereference and server crash), obtain sensitive memory information, or possibly execute arbitrary code via (1) a CASE expression within the test value subexpression of another CASE or (2) inlining of an SQL function that implements the equality operator used for a CASE expression involving values of different types.

Affected (47)

1 product
Debian Linux
1 product
Postgresql
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration B
46 vulnerable
Vulnerable SoftwareAffected Versions
Postgresql
Up to 9.1.22
Version 9.2.10
Version 9.2.11
Version 9.2.12
Version 9.2.13
Version 9.2.14
Version 9.2.15
Version 9.2.16
Version 9.2.17
Version 9.2.1
Version 9.2.2
Version 9.2.3
Version 9.2.4
Version 9.2.5
Version 9.2.6
Version 9.2.7
Version 9.2.8
Version 9.2.9
Version 9.2
Version 9.3.10
Version 9.3.11
Version 9.3.12
Version 9.3.13
Version 9.3.1
Version 9.3.2
Version 9.3.3
Version 9.3.4
Version 9.3.5
Version 9.3.6
Version 9.3.7
Version 9.3.8
Version 9.3.9
Version 9.3
Version 9.4.1
Version 9.4.2
Version 9.4.3
Version 9.4.4
Version 9.4.5
Version 9.4.6
Version 9.4.7
Version 9.4.8
Version 9.4
Version 9.5.1
Version 9.5.2
Version 9.5.3
Version 9.5

References (32)

Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: secalert@redhat.com
Issue TrackingThird Party AdvisoryVDB Entry
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Release NotesVendor Advisory
Source: secalert@redhat.com
Release NotesVendor Advisory
Source: secalert@redhat.com
Release NotesVendor Advisory
Source: secalert@redhat.com
Release NotesVendor Advisory
Source: secalert@redhat.com
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory

Timeline

No history available yet.