PostgreSQL SECURITY DEFINER Function Local Privilege Escalation Vulnerability

PostgreSQL is prone to a local privilege-escalation vulnerability.

Exploiting this issue allows local attackers to escalate privileges in the context of the 'security_definer' function.

PostgreSQL versions prior to 8.2.4, 8.1.9, 8.0.13, 7.4.17, and 7.3.19 are vulnerable to this issue.


 

Privacy Statement
Copyright 2010, SecurityFocus