<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T10:37:13.962658+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-03335</id>
    <title>bdu:2019-03335</title>
    <updated>2026-10-06T10:37:14.094559+00:00</updated>
    <content>bdu:2019-03335</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-03335"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-36407</id>
    <title>cnvd-2017-36407</title>
    <updated>2026-10-06T10:37:14.094602+00:00</updated>
    <content>cnvd-2017-36407</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-36407"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-173922</id>
    <title>EUVD-2026-173922</title>
    <updated>2026-10-06T10:37:14.094618+00:00</updated>
    <content>EUVD-2026-173922</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-173922"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-12172</id>
    <title>fkie_cve-2017-12172</title>
    <updated>2026-10-06T10:37:14.094631+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, 9.5.x before 9.5.10, 9.4.x before 9.4.15, 9.3.x before 9.3.20, and 9.2.x before 9.2.24 runs under a non-root operating system account, and database superusers have effective ability to run arbitrary code under that system account. PostgreSQL provides a script for starting the database server during system boot. Packages of PostgreSQL for many operating systems provide their own, packager-authored startup implementations. Several implementations use a log file name that the database superuser can replace with a symbolic link. As root, they open(), chmod() and/or chown() this log file name. This often suffices for the database superuser to escalate to root privileges when root starts the server.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-12172"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-r936-w9vp-c53q</id>
    <title>GHSA-r936-w9vp-c53q</title>
    <updated>2026-10-06T10:37:14.094665+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, 9.5.x before 9.5.10, 9.4.x before 9.4.15, 9.3.x before 9.3.20, and 9.2.x before 9.2.24 runs under a non-root operating system account, and database superusers have effective ability to run arbitrary code under that system account. PostgreSQL provides a script for starting the database server during system boot. Packages of PostgreSQL for many operating systems provide their own, packager-authored startup implementations. Several implementations use a log file name that the database superuser can replace with a symbolic link. As root, they open(), chmod() and/or chown() this log file name. This often suffices for the database superuser to escalate to root privileges when root starts the server.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-r936-w9vp-c53q"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-12172</id>
    <title>gsd-2017-12172</title>
    <updated>2026-10-06T10:37:14.094684+00:00</updated>
    <content>gsd-2017-12172</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-12172"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:3402</id>
    <title>RHSA-2017:3402 — Red Hat Security Advisory: postgresql security update</title>
    <updated>2026-10-06T10:37:14.094695+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>postgresql: Start scripts permit database administrator to modify root-owned files postgresql: Start scripts permit database administrator to modify root-owned files</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:3402"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:3403</id>
    <title>RHSA-2017:3403 — Red Hat Security Advisory: rh-postgresql94-postgresql security update</title>
    <updated>2026-10-06T10:37:14.094717+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>postgresql: Start scripts permit database administrator to modify root-owned files postgresql: Start scripts permit database administrator to modify root-owned files</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:3403"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:0077-1</id>
    <title>SUSE-SU-2018:0077-1 — Security update for postgresql94</title>
    <updated>2026-10-06T10:37:14.094735+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for postgresql94</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:0077-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0143</id>
    <title>WID-SEC-W-2024-0143 — PostgreSQL: Mehrere Schwachstellen</title>
    <updated>2026-10-06T10:37:14.094750+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler oder entfernter authenitisierter Angreifer kann mehrere Schwachstellen in PostgreSQL ausnutzen, um seine Privilegien zu erhöhen, vertrauliche Daten einzusehen, Daten zu manipulieren, einen Denial of Serivce auszulösen oder Sicherheitsmechanismen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0143"/>
  </entry>
</feed>
