PostgreSQL CVE-2014-0067 Weak Authentication Vulnerability

description-logoDescription

The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by leveraging access to this cluster.

affected-products-logoAffected Applications

PostgreSQL

CVE References

CVE-2014-0067