We found results for “”
CVE-2025-4207
Good to know:
Date: May 8, 2025
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where a 1-byte over-read can elicit process termination. This affects the database server and also libpq. Versions before PostgreSQL 17.5, 16.9, 15.13, 14.18, and 13.21 are affected.
Severity Score
Related Resources (5)
Severity Score
Weakness Type (CWE)
Buffer Over-read
CWE-126Top Fix
Upgrade Version
Upgrade to version https://github.com/postgres/postgres.git - REL_17_5;https://github.com/postgres/postgres.git - REL_16_9;https://github.com/postgres/postgres.git - REL_15_13;https://github.com/postgres/postgres.git - REL_14_18;https://github.com/postgres/postgres.git - REL_13_21
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | HIGH |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | NONE |
| Integrity (I): | NONE |
| Availability (A): | HIGH |
Vulnerabilities
Projects
Contact Us


