CVE-2021-32028
published 2021-10-11CVE-2021-32028: A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read…
PriorityP341medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
EPSS
1.45%
70.4th percentile
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | postgresql-13 | < postgresql-13 13.3-1 (bullseye) | postgresql-13 13.3-1 (bullseye) |
| postgresql | postgresql | — | — |
| postgresql | postgresql | >= 10.0 < 10.17 | 10.17 |
| postgresql | postgresql | >= 11.0 < 11.12 | 11.12 |
| postgresql | postgresql | >= 12.0 < 12.7 | 12.7 |
| postgresql | postgresql | >= 13.0 < 13.3 | 13.3 |
| postgresql | postgresql | >= 9.6.0 < 9.6.22 | 9.6.22 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Hitachi Energy MicroSCADA X DMS600
cisa_ics·2022-10-25·CVSS 8.8
[HIGH] Hitachi Energy MicroSCADA X DMS600
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Hitachi Energy MicroSCADA X DMS600
Last RevisedOctober 25, 2022
Alert CodeICSA-22-298-04
## 1. EXECUTIVE SUMMARY
- CVSS v3 8.8
- ATTENTION: Exploitable remotely/Low attack complexity
- Vendor: Hitachi Energy
- Equipment: DMS600
- Vulnerability: Reliance on Uncontrolled Component
## 2. RISK EVALUATION
Successful exploitation of this vulnerabilities could allow an attacker to gain unauthorized access to information.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following Hitachi Energy product, integrated with MicroSCADA X, is affected:
- DMS600: Version 4.5
## 3
CISA ICS
Hitachi Energy MicroSCADA Pro/X SYS600
cisa_ics·2022-04-21
Hitachi Energy MicroSCADA Pro/X SYS600
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Hitachi Energy MicroSCADA Pro/X SYS600
Last RevisedApril 21, 2022
Alert CodeICSA-22-111-03
## 1. EXECUTIVE SUMMARY
- CVSS v3 8.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Hitachi Energy
- Equipment: MicroSCADA Pro/X SYS600
- Vulnerabilities: Observable Discrepancy, HTTP Request Smuggling, Classic Buffer Overflow, Improper Certificate Validation, Improper Restriction of Operations within the Bounds of a Memory Buffer, Exposure of Sensitive Information to an Unauthorized Actor
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities coul
Ubuntu
PostgreSQL vulnerabilities
vendor_ubuntu·2021-06-01·CVSS 8.8
CVE-2021-32029 [HIGH] PostgreSQL vulnerabilities
Title: PostgreSQL vulnerabilities
Summary: Several security issues were fixed in PostgreSQL.
Tom Lane discovered that PostgreSQL incorrect handled certain array
subscripting calculations. An authenticated attacker could possibly use
this issue to overwrite server memory and escalate privileges.
(CVE-2021-32027)
Andres Freund discovered that PostgreSQL incorrect handled certain
INSERT ... ON CONFLICT ... DO UPDATE commands. A remote attacker could
possibly use this issue to read server memory and obtain sensitive
information. (CVE-2021-32028)
Tom Lane discovered that PostgreSQL incorrect handled certain UPDATE ...
RETURNING commands. A remote attacker could possibly use this issue to read
server memory and obtain sensitive information. This issue only affected
Ubuntu 20.04 LTS, Ubuntu 2
Red Hat
postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE
vendor_redhat·2021-05-13·CVSS 6.5
CVE-2021-32028 [MEDIUM] CWE-200 postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE
postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
Package: postgresql (Red Hat build of Quarkus) - Not affected
Package: postgresql (Red Hat Decision Manager 7) - Not affected
Package: postgresql (Red Hat Enterprise Linux 6) - Out of support scope
Pack
Debian
CVE-2021-32028: postgresql-13 - A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE co...
vendor_debian·2021·CVSS 6.5
CVE-2021-32028 [MEDIUM] CVE-2021-32028: postgresql-13 - A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE co...
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
Scope: local
bullseye: resolved (fixed in 13.3-1)
GHSA
GHSA-fr87-j862-8rwm: A flaw was found in postgresql
ghsa_unreviewed·2022-05-24
CVE-2021-32028 [MEDIUM] CWE-200 GHSA-fr87-j862-8rwm: A flaw was found in postgresql
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
OSV
CVE-2021-32028: A flaw was found in postgresql
osv·2021-10-11·CVSS 6.5
CVE-2021-32028 [MEDIUM] CVE-2021-32028: A flaw was found in postgresql
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
OSV
postgresql-10, postgresql-12, postgresql-13 vulnerabilities
osv·2021-06-01·CVSS 8.8
CVE-2021-32027 [HIGH] postgresql-10, postgresql-12, postgresql-13 vulnerabilities
postgresql-10, postgresql-12, postgresql-13 vulnerabilities
Tom Lane discovered that PostgreSQL incorrect handled certain array
subscripting calculations. An authenticated attacker could possibly use
this issue to overwrite server memory and escalate privileges.
(CVE-2021-32027)
Andres Freund discovered that PostgreSQL incorrect handled certain
INSERT ... ON CONFLICT ... DO UPDATE commands. A remote attacker could
possibly use this issue to read server memory and obtain sensitive
information. (CVE-2021-32028)
Tom Lane discovered that PostgreSQL incorrect handled certain UPDATE ...
RETURNING commands. A remote attacker could possibly use this issue to read
server memory and obtain sensitive information. This issue only affected
Ubuntu 20.04 LTS, Ubuntu 20.10, and Ubuntu 21.04. (CVE-2021-
No detection rules found.
No public exploits indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=1956877https://security.gentoo.org/glsa/202211-04https://security.netapp.com/advisory/ntap-20211112-0003/https://www.postgresql.org/support/security/CVE-2021-32028https://bugzilla.redhat.com/show_bug.cgi?id=1956877https://security.gentoo.org/glsa/202211-04https://security.netapp.com/advisory/ntap-20211112-0003/https://www.postgresql.org/support/security/CVE-2021-32028
2021-10-11
Published