mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 17:21:36 +00:00
419 lines
16 KiB
JSON
419 lines
16 KiB
JSON
{
|
|
"id": "CVE-2009-1341",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2009-04-30T20:30:00.437",
|
|
"lastModified": "2017-09-29T01:34:19.450",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Memory leak in the dequote_bytea function in quote.c in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.0.0 for Perl allows context-dependent attackers to cause a denial of service (memory consumption) by fetching data with BYTEA columns."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Fuga de memoria en la funci\u00f3n dequote_bytea en quote.c en el m\u00f3dulo DBD::Pg (alias DBD-Pg o libdbd-pg-perl) anterior a v2.0.0 para Perl permite a atacantes, dependiendo del contexto, causar una denegaci\u00f3n de servicio (consumo de memoria) obteniendo los datos con columnas BYTEA."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "PARTIAL",
|
|
"baseScore": 5.0
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 10.0,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-200"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "1.4.9",
|
|
"matchCriteriaId": "4FA7647E-4058-4E2B-AFF8-01BBAB1D1B87"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "613612A7-EC67-4B63-89AB-0A844D1A8782"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "34E75CE2-B819-46BF-ABE9-83C32B22EC42"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "638D9B29-C654-41E4-AB2D-0047D55673DB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E024E548-2D2D-4651-808D-5C0010C13063"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4C53713A-8B3E-483C-B0B2-1B26C550EB19"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.51:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7E5750AA-0347-4A14-B5E9-BA60AFAD26AE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.52:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B3630BEA-0EDD-4B42-B652-ACE8E501FF29"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.61:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "35306D81-3690-4082-8CE3-77512B4F1791"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.62:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "72323A75-2F6F-4D22-9B5C-4691DF6918BF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.63:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6CACFAD2-226E-4DC0-A426-305BB4AF573B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.64:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4C0B881F-AC4B-4A71-8E1B-051549E5D22B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.65:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "97BA119B-A2BA-4133-BA38-841107A1B404"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.66:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D5A4793D-CE46-4E87-835A-AE99B3087331"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.67:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8DA32921-F742-4972-9596-23CCEC98009E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.68:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4A3F494B-D2FB-4DF5-8346-7DEBC6A15C1C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.69:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A7E0581B-E46B-4D31-B6EF-6B961A149324"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.70:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A0E3784A-BAB6-4E1F-BDC8-02471EB9E9FF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.71:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "67394C79-025F-4756-847C-37CB48DD6337"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.72:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "26B1B340-723C-423C-B08D-7D5A3D0E69CC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.73:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5CD390BD-E49E-4982-BC14-70D893F18DFE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.80:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "036A1EB2-AFA1-4279-90C2-B8F69DB44D63"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.81:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2DC4E34A-1D5D-4C32-A1DD-AAC168E0AB49"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.82:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A9469A86-BDF3-4266-8390-C8E9994ACB1F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.83:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0F6BB8AB-F316-46F4-A385-F6CAB8BEAAD2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.84:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FC597EB3-913B-40F5-A693-BC49BB89AB2D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.85:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1B35351C-8CE9-4AB6-A4C1-AB01E6A60197"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.86:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BA32BC37-7FDB-43A1-BE17-77D2F82871F8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.87:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "ADF1C3F4-8C2B-40DA-A8AF-D1492AAD92D0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.88:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FFA29146-FB2E-457F-9B79-3C059E659313"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.89:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "64D8C17D-6D35-49FC-83F2-968E6CA28CB3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.90:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A568FEB3-4852-4BCE-ADDE-749A216E995C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.91:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "753CD595-49CD-48BD-980B-415DDBC4492C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.92:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7C74BC7E-18C0-4399-9240-6A000B23B91A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.93:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "190E89EA-61AE-4EB8-ACBB-4E4FE39ABB6B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.94:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5532D0CB-7001-4C8E-80BF-54EAD32E8A40"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.95:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B9F54A01-AEFA-4426-977E-677970FE3025"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.96:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F7EDF0F1-D0DB-4D84-82DD-8E65E129CD08"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.97:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8CCD9E8F-8456-4513-A291-70DA11CF6E1B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.98:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "51B2F3E1-2D73-499C-A971-31679EE07E3D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:0.99:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E4905713-30CC-4327-A6D8-FACE14B362E5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "681E2741-C68B-4AED-BAB5-DFC78F10FF36"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5AEF38D8-073C-427D-B4BE-54FF4272054F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5E6031E9-B041-43B9-B3C1-796086925821"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3BEE07CF-260D-4BAF-A1E6-91941293E16E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "50E810D1-7D96-47E2-83F9-44FF8938BABC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.3.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6A150EC9-2A91-4221-870C-A6B6C3533516"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.3.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5FC742FA-EC42-4812-9788-C482DF2A1C4E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F55C4ECC-ACC8-444B-9DA6-F115659C2D58"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D2092056-CEC1-41EA-B10E-C5519113982E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1B8CF3B9-6980-47C9-A15A-DC2E3A53A6A6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "875393EA-EADB-4F58-803D-A9FCA1C4B233"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3F918396-10B5-430F-A046-7EBBA9B58E58"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "28F79BE3-82EC-4643-8D76-74577AC0A0DB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AE351E89-6E8B-499A-BE04-8CDFDF105DA2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "43AE9FD7-E718-47BA-AFF1-920F560CDC42"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:debian:libdbd-pg-perl:1.4.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "42EF22B1-A736-4A9E-A91F-2B60D2182440"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://cpansearch.perl.org/src/TURNSTEP/DBD-Pg-2.13.1/Changes",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://lists.opensuse.org/opensuse-security-announce/2009-07/msg00002.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://rt.cpan.org/Public/Bug/Display.html?id=21392",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/34909",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/35058",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/35685",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://security.debian.org/pool/updates/main/libd/libdbd-pg-perl/libdbd-pg-perl_1.49-2+etch1.diff.gz",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.debian.org/security/2009/dsa-1780",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.redhat.com/support/errata/RHSA-2009-0479.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.redhat.com/support/errata/RHSA-2009-1067.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/34757",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/50387",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://launchpad.net/bugs/cve/2009-1341",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9680",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |