CVE-2021-32028

All FrameworksPostgreSQLCWE-200CVE-2021-32028

CVE-2021-32028

State: PUBLISHED · Published: 2021-10-11 · Updated: 2024-08-03 · Assigner: redhat
Description
A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory. The highest threat from this vulnerability is to data confidentiality.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/32xxx/CVE-2021-32028.json