Logo
vulnerabilityCVE-2017-8806
Name
CVE-2017-8806
Source
NVD ( link)Debian ( link)
Description
The Debian pg_ctlcluster, pg_createcluster, and pg_upgradecluster scripts, as distributed in the Debian postgresql-common package before 181+deb9u1 for PostgreSQL (and other packages related to Debian and Ubuntu), handled symbolic links insecurely, which could result in local denial of service by overwriting arbitrary files.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
postgresql
False Positive

Vulnerability Ratings#


5.5
CVSSv31
3.6
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
17.10
Not Affected
buildroot
master
18.4
Not Affected
openwrt
master
18.4-r1
Not Affected
openwrt
openwrt-25.12
17.5-r3
Not Affected
yocto
kirkstone
14.22
Not Affected
yocto
master
17.10
False Positive