Security Advisory

CVE-2013-1901

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-04-04 17:00:00
Last updated 2024-08-06 15:20:36
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) pg_start_backup or (2) pg_stop_backup functions.