漏洞信息详情
Leon J Breedt Pam-PGSQL远程SQL注入漏洞
- CNNVD编号:CNNVD-200405-016
- 危害等级: 高危
- CVE编号:
CVE-2004-0366
- 漏洞类型:
SQL注入
- 发布时间:
2004-05-04
- 威胁类型:
远程
- 更新时间:
2006-09-22
- 厂 商:
leon_j_breedt - 漏洞来源:
Primoz Bratanic -
漏洞简介
libpam-pgsql程序库0.52之前的版本存在SQL注入漏洞。攻击者可以执行任意的SQL语句。
漏洞公告
Debian has issued fixes.
Leon J Breedt pam-pgsql 0.5.1
Debian libpam-pgsql_0.5.2-3woody2_alpha.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_alpha.deb-
Debian libpam-pgsql_0.5.2-3woody2_arm.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_arm.deb -
Debian libpam-pgsql_0.5.2-3woody2_hppa.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_hppa.deb -
Debian libpam-pgsql_0.5.2-3woody2_i386.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_i386.deb -
Debian libpam-pgsql_0.5.2-3woody2_ia64.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_ia64.deb -
Debian libpam-pgsql_0.5.2-3woody2_m68k.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_m68k.deb -
Debian libpam-pgsql_0.5.2-3woody2_mips.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_mips.deb -
Debian libpam-pgsql_0.5.2-3woody2_mipsel.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_mipsel.deb -
Debian libpam-pgsql_0.5.2-3woody2_powerpc.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_powerpc.deb -
Debian libpam-pgsql_0.5.2-3woody2_s390.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_s390.deb -
Debian libpam-pgsql_0.5.2-3woody2_sparc.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_sparc.deb
Leon J Breedt pam-pgsql 0.5.2
-
Debian libpam-pgsql_0.5.2-3woody2_alpha.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_alpha.deb -
Debian libpam-pgsql_0.5.2-3woody2_arm.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_arm.deb -
Debian libpam-pgsql_0.5.2-3woody2_hppa.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_hppa.deb -
Debian libpam-pgsql_0.5.2-3woody2_i386.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_i386.deb -
Debian libpam-pgsql_0.5.2-3woody2_ia64.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_ia64.deb -
Debian libpam-pgsql_0.5.2-3woody2_m68k.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_m68k.deb -
Debian libpam-pgsql_0.5.2-3woody2_mips.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_mips.deb -
Debian libpam-pgsql_0.5.2-3woody2_mipsel.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_mipsel.deb -
Debian libpam-pgsql_0.5.2-3woody2_powerpc.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_powerpc.deb -
Debian libpam-pgsql_0.5.2-3woody2_s390.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_s390.deb -
Debian libpam-pgsql_0.5.2-3woody2_sparc.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_sparc.deb
Leon J Breedt pam-pgsql 0.5.2 -7
-
Debian libpam-pgsql_0.5.2-3woody2_alpha.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_alpha.deb -
Debian libpam-pgsql_0.5.2-3woody2_arm.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_arm.deb -
Debian libpam-pgsql_0.5.2-3woody2_hppa.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_hppa.deb -
Debian libpam-pgsql_0.5.2-3woody2_i386.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_i386.deb -
Debian libpam-pgsql_0.5.2-3woody2_ia64.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_ia64.deb -
Debian libpam-pgsql_0.5.2-3woody2_m68k.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_m68k.deb -
Debian libpam-pgsql_0.5.2-3woody2_mips.deb
http://security.debian.org/pool/updates/main/p/pam-pgsql/libpam-pgsql_
0.5.2-3woody2_mips.deb -
Debian libpam-pgsql_0.5.2-3woody2_mipsel.deb
参考网址
来源: XF
名称: pam-pgsql-sql-injection(15651)
链接:http://xforce.iss.net/xforce/xfdb/15651
来源: DEBIAN
名称: DSA-469
链接:http://www.debian.org/security/2004/dsa-469
来源: BID
名称: 10266
链接:http://www.securityfocus.com/bid/10266
来源: SECUNIA
名称: 11237
链接:http://secunia.com/advisories/11237
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END