cbcvebase.
CVE-2020-25696
published 2020-11-23

CVE-2020-25696: A flaw was found in the psql interactive terminal of PostgreSQL in versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before…

PriorityP347high7.5CVSS 3.1
AVNACHPRNUIRSUCHIHAH
EPSS
2.59%
83.5th percentile
A flaw was found in the psql interactive terminal of PostgreSQL in versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before 9.5.24. If an interactive psql session uses \gset when querying a compromised server, the attacker can execute arbitrary code as the operating system account running psql. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Affected

10 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianpostgresql-13< postgresql-13 13.1-1 (bullseye)postgresql-13 13.1-1 (bullseye)
msrccm1_postgresql_12.7-1_on_cbl_mariner_1.0
postgresqlpostgresql
postgresqlpostgresql>= 10.0 < 10.1510.15
postgresqlpostgresql>= 11.0 < 11.1011.10
postgresqlpostgresql>= 12.0 < 12.512.5
postgresqlpostgresql>= 13.0 < 13.113.1
postgresqlpostgresql>= 9.5.0 < 9.5.249.5.24
postgresqlpostgresql>= 9.6.0 < 9.6.209.6.20

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
osv8.1HIGH
vendor_ubuntu8.1HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.