Endpoint Vulnerability

PostgreSQL: An error in extended protocol message reading.

Description

A flaw was found in the way PostgreSQL handled certain errors that were generated during protocol synchronization. An authenticated database user could use this flaw to inject queries into an existing connection.

Affected Products

PostgreSQL

References

CVE-2015-0244,