CVE-2016-0766

Source
https://nvd.nist.gov/vuln/detail/CVE-2016-0766
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-0766.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2016-0766
Related
Withdrawn
2025-06-08T12:50:29.965798Z
Published
2016-02-17T15:59:01Z
Modified
2025-06-08T02:22:04Z
Downstream
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

References

Affected packages

Git / git.postgresql.org/git/postgresql.git

Affected ranges

Type
GIT
Repo
https://git.postgresql.org/git/postgresql.git
Events
Introduced
1f43001424a9da624a89b213d0be606a8212a50a
Fixed
3dca6f36fcd694c8c49d26e7c4971194dee2754a