CVE-2021-3677
published 2022-03-02CVE-2021-3677: A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database…
PriorityP340medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
EPSS
1.42%
69.9th percentile
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | postgresql-13 | < postgresql-13 13.4-0+deb11u1 (bullseye) | postgresql-13 13.4-0+deb11u1 (bullseye) |
| fedoraproject | fedora | — | — |
| msrc | cbl2_postgresql_14.2-1_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_postgresql_12.8-1_on_cbl_mariner_1.0 | — | — |
| postgresql | postgresql | — | — |
| postgresql | postgresql | >= 11.0 < 11.13 | 11.13 |
| postgresql | postgresql | >= 12.0 < 12.8 | 12.8 |
| postgresql | postgresql | >= 13.0 < 13.4 | 13.4 |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_for_ibm_z_systems | — | — |
| redhat | enterprise_linux_for_power_little_endian | — | — |
| redhat | software_collections | — | — |
| redhat | virtualization | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_msrc6.5MEDIUM
vendor_redhat6.5MEDIUM
vendor_ubuntu5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j859-w9g7-8276: A flaw was found in postgresql
ghsa_unreviewed·2022-03-04
CVE-2021-3677 [MEDIUM] CWE-200 GHSA-j859-w9g7-8276: A flaw was found in postgresql
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
OSV
CVE-2021-3677: A flaw was found in postgresql
osv·2022-03-02·CVSS 6.5
CVE-2021-3677 [MEDIUM] CVE-2021-3677: A flaw was found in postgresql
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
OSV
postgresql-10, postgresql-12, postgresql-13 vulnerabilities
osv·2021-08-12·CVSS 5.9
CVE-2021-3677 [MEDIUM] postgresql-10, postgresql-12, postgresql-13 vulnerabilities
postgresql-10, postgresql-12, postgresql-13 vulnerabilities
It was discovered that the PostgresQL planner could create incorrect plans
in certain circumstances. A remote attacker could use this issue to cause
PostgreSQL to crash, resulting in a denial of service, or possibly obtain
sensitive information from memory. This issue only affected Ubuntu 20.04
LTS and Ubuntu 21.04. (CVE-2021-3677)
It was discovered that PostgreSQL incorrectly handled certain SSL
renegotiation ClientHello messages from clients. A remote attacker could
possibly use this issue to cause PostgreSQL to crash, resulting in a denial
of service. (CVE-2021-3449)
Microsoft
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration any authenticated database user can complete this attack at will. The at
vendor_msrc·2022-03-08·CVSS 6.5
CVE-2021-3677 [MEDIUM] CWE-200 A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration any authenticated database user can complete this attack at will. The at
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0 the known versions of this attack are infeasible. However undiscovered variants of the attack may be independent of that setting.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro
Ubuntu
PostgreSQL vulnerabilities
vendor_ubuntu·2021-08-12·CVSS 5.9
CVE-2021-3449 [MEDIUM] PostgreSQL vulnerabilities
Title: PostgreSQL vulnerabilities
Summary: Several security issues were fixed in PostgreSQL.
It was discovered that the PostgresQL planner could create incorrect plans
in certain circumstances. A remote attacker could use this issue to cause
PostgreSQL to crash, resulting in a denial of service, or possibly obtain
sensitive information from memory. This issue only affected Ubuntu 20.04
LTS and Ubuntu 21.04. (CVE-2021-3677)
It was discovered that PostgreSQL incorrectly handled certain SSL
renegotiation ClientHello messages from clients. A remote attacker could
possibly use this issue to cause PostgreSQL to crash, resulting in a denial
of service. (CVE-2021-3449)
Instructions: This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you
Red Hat
postgresql: memory disclosure in certain queries
vendor_redhat·2021-08-12·CVSS 6.5
CVE-2021-3677 [MEDIUM] CWE-200 postgresql: memory disclosure in certain queries
postgresql: memory disclosure in certain queries
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the know
Debian
CVE-2021-3677: postgresql-13 - A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes...
vendor_debian·2021·CVSS 6.5
CVE-2021-3677 [MEDIUM] CVE-2021-3677: postgresql-13 - A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes...
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
Scope: local
bullseye: resolved (fixed in 13.4-0+deb11u1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=2001857https://security.gentoo.org/glsa/202211-04https://security.netapp.com/advisory/ntap-20220407-0008/https://www.postgresql.org/support/security/CVE-2021-3677/https://bugzilla.redhat.com/show_bug.cgi?id=2001857https://security.gentoo.org/glsa/202211-04https://security.netapp.com/advisory/ntap-20220407-0008/https://www.postgresql.org/support/security/CVE-2021-3677/
2022-03-02
Published