CVE-2019-3466

All FrameworksPostgreSQLCWE-OtherCVE-2019-3466

CVE-2019-3466

State: PUBLISHED · Published: 2019-11-20 · Updated: 2024-08-04 · Assigner: debian
Description
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/3xxx/CVE-2019-3466.json