CVE-2007-4639

Impact:
Moderate
Public Date:
2007-08-29
Bugzilla:
284521: CVE-2007-4639 EnterpriseDB security flaw

The MITRE CVE dictionary describes this issue as:

EnterpriseDB Advanced Server 8.2 does not properly handle certain debugging function calls that occur before a call to pldbg_create_listener, which allows remote authenticated users to cause a denial of service (daemon crash) and possibly execute arbitrary code via a SELECT statement that invokes a pldbg_ function, as demonstrated by (1) pldbg_get_stack and (2) pldbg_abort_target, which triggers use of an uninitialized pointer.

Find out more about CVE-2007-4639 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
RHX (v. 5 EnterpriseDB) (EnterpriseDB) RHSA-2007:0895 2007-09-24

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.