{ "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2006-0553", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "PostgreSQL 8.1.0 through 8.1.2 allows authenticated database users to gain additional privileges via \"knowledge of the backend protocol\" using a crafted SET ROLE to other database users, a different vulnerability than CVE-2006-0678." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "http://www.postgresql.org/docs/8.1/static/release.html#RELEASE-8-1-3", "refsource": "CONFIRM", "url": "http://www.postgresql.org/docs/8.1/static/release.html#RELEASE-8-1-3" }, { "name": "ADV-2006-0605", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2006/0605" }, { "name": "18890", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/18890" }, { "name": "VU#567452", "refsource": "CERT-VN", "url": "http://www.kb.cert.org/vuls/id/567452" }, { "name": "16649", "refsource": "BID", "url": "http://www.securityfocus.com/bid/16649" }, { "name": "[pgsql-announce] 20060214 Minor Releases 7.3 thru 8.1 Available to Fix Security Issue", "refsource": "MLIST", "url": "http://archives.postgresql.org/pgsql-announce/2006-02/msg00008.php" }, { "name": "1015636", "refsource": "SECTRACK", "url": "http://securitytracker.com/id?1015636" }, { "name": "postgresql-setrole-privilege-elevation(24718)", "refsource": "XF", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/24718" }, { "name": "OpenPKG-SA-2006.004", "refsource": "OPENPKG", "url": "http://www.openpkg.org/security/OpenPKG-SA-2006.004-postgresql.html" }, { "name": "20060215 PostgreSQL security releases 8.1.3, 8.0.7, 7.4.12, 7.3.14", "refsource": "BUGTRAQ", "url": "http://www.securityfocus.com/archive/1/425037/100/0/threaded" } ] } }