CVE-2023-2454

Source
https://cve.org/CVERecord?id=CVE-2023-2454
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-2454.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-2454
Aliases
Downstream
ALPINE (1)
BELL (1)
CLEANSTART (4)
DEBIAN (1)
ECHO (1)
JLSEC (1)
MGASA (1)
OESA (3)
openSUSE (7)
RHSA (14)
RLSA (6)
SUSE (9)
UBUNTU (1)
Related
Published
2023-06-09T19:15:09Z
Modified
2026-04-16T00:06:42Z
Severity
  • 7.2 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an authed attacker with elevated database-level privileges to execute arbitrary code.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-2454.json"
unresolved_ranges
[
    {
        "events":  [
            {
                "introduced":  "11.0"
            },
            {
                "fixed":  "11.20"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "12.0"
            },
            {
                "fixed":  "12.15"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "13.0"
            },
            {
                "fixed":  "13.11"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "14.0"
            },
            {
                "fixed":  "14.8"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "15.0"
            },
            {
                "fixed":  "15.3"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "0"
            },
            {
                "last_affected":  "8.0"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "0"
            },
            {
                "last_affected":  "9.0"
            }
        ]
    },
    {
        "events":  [
            {
                "introduced":  "0"
            },
            {
                "last_affected":  "38"
            }
        ]
    }
]