CVE-2019-3466
published 2019-11-20CVE-2019-3466: The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.50%
39.8th percentile
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | postgresql-common | < postgresql-common 210 (bookworm) | postgresql-common 210 (bookworm) |
| postgresql | postgresql-common | < 210 | 210 |
| postgresql | postgresql-common | >= 0 < 210 | 210 |
| postgresql | postgresql-common | >= 0 < 210 | 210 |
| postgresql | postgresql-common | >= 0 < 210 | 210 |
| postgresql | postgresql-common | >= 0 < 210 | 210 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
postgresql-common vulnerability
vendor_ubuntu·2019-12-03
CVE-2019-3466 postgresql-common vulnerability
Title: postgresql-common vulnerability
Summary: postgresql-common could be made to create arbitrary directories.
USN-4194-1 fixed a vulnerability in postgresql-common. This update provides
the corresponding update for Ubuntu 14.04 ESM.
Original advisory details:
Rich Mirch discovered that the postgresql-common pg_ctlcluster script
incorrectly handled directory creation. A local attacker could possibly use
this issue to escalate privileges.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
postgresql-common vulnerability
vendor_ubuntu·2019-11-14
CVE-2019-3466 postgresql-common vulnerability
Title: postgresql-common vulnerability
Summary: postgresql-common could be made to create arbitrary directories.
Rich Mirch discovered that the postgresql-common pg_ctlcluster script
incorrectly handled directory creation. A local attacker could possibly use
this issue to escalate privileges.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2019-3466: postgresql-common - The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't dr...
vendor_debian·2019·CVSS 7.8
CVE-2019-3466 [HIGH] CVE-2019-3466: postgresql-common - The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't dr...
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
Scope: local
bookworm: resolved (fixed in 210)
bullseye: resolved (fixed in 210)
forky: resolved (fixed in 210)
sid: resolved (fixed in 210)
trixie: resolved (fixed in 210)
GHSA
GHSA-rhrq-jx2f-79g7: The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, w
ghsa_unreviewed·2022-05-24
CVE-2019-3466 [HIGH] GHSA-rhrq-jx2f-79g7: The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, w
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
OSV
CVE-2019-3466: The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, w
osv·2019-11-20·CVSS 7.8
CVE-2019-3466 [HIGH] CVE-2019-3466: The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, w
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-11-20
Published