Vulnerability Details CVE-2002-1401
Buffer overflows in (1) circle_poly, (2) path_encode and (3) path_add (also incorrectly identified as path_addr) for PostgreSQL 7.2.3 and earlier allow attackers to cause a denial of service and possibly execute arbitrary code, possibly as a result of an integer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.4%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2002-1401
-
cpe:2.3:a:postgresql:postgresql:6.3.2
-
cpe:2.3:a:postgresql:postgresql:6.5.3
-
cpe:2.3:a:postgresql:postgresql:7.0.3
-
cpe:2.3:a:postgresql:postgresql:7.1
-
cpe:2.3:a:postgresql:postgresql:7.1.1
-
cpe:2.3:a:postgresql:postgresql:7.1.2
-
cpe:2.3:a:postgresql:postgresql:7.1.3
-
cpe:2.3:a:postgresql:postgresql:7.2
-
cpe:2.3:a:postgresql:postgresql:7.2.1
-
cpe:2.3:a:postgresql:postgresql:7.2.2
-
cpe:2.3:a:postgresql:postgresql:7.2.3