CVE-2019-10129
Prior to this release, a user running PostgreSQL 11 can read arbitrary bytes of server memory by executing a purpose-crafted INSERT statement to a partitioned table.
Version Information
| Affected branch | Introduced | Fixed In | Fix Published |
|---|---|---|---|
| 11 | — | 11.3 | 2019-05-09 |
CVSS 3.0
| Overall Score | 6.5 |
|---|---|
| Component | core server |
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
First published: 2019-05-09