<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 07:47:03 +0000</lastBuildDate>
    <item>
      <title>bdu:2019-04174</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2019-04174</link>
      <description>bdu:2019-04174</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2019-04174</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2017-7485 — CVE-2017-7485 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2017-7485</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2017-7485</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-FW42039 — vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row secur…</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-fw42039</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: postgresql&lt;/p&gt;
&lt;p&gt;Multiple security vulnerabilities affect the postgresql package. A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. See references for individual vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: postgresql&lt;/p&gt;
&lt;p&gt;Multiple security vulnerabilities affect the postgresql package. A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. See references for individual vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-fw42039</guid>
    </item>
    <item>
      <title>cnvd-2017-06931</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-06931</link>
      <description>cnvd-2017-06931</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-06931</guid>
    </item>
    <item>
      <title>EUVD-2026-74729</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-74729</link>
      <description>EUVD-2026-74729</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-74729</guid>
    </item>
    <item>
      <title>fkie_cve-2017-7485</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-7485</link>
      <description>&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-7485</guid>
    </item>
    <item>
      <title>GHSA-742m-4pjq-x8qf</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-742m-4pjq-x8qf</link>
      <description>&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-742m-4pjq-x8qf</guid>
    </item>
    <item>
      <title>gsd-2017-7485</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-7485</link>
      <description>gsd-2017-7485</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-7485</guid>
    </item>
    <item>
      <title>RHSA-2017:1677 — Red Hat Security Advisory: rh-postgresql95-postgresql security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:1677</link>
      <description>&lt;p&gt;postgresql: Selectivity estimators bypass SELECT privilege checks postgresql: libpq ignores PGREQUIRESSL environment variable postgresql: pg_user_mappings view discloses foreign server passwords&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;postgresql: Selectivity estimators bypass SELECT privilege checks postgresql: libpq ignores PGREQUIRESSL environment variable postgresql: pg_user_mappings view discloses foreign server passwords&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:1677</guid>
    </item>
    <item>
      <title>SUSE-SU-2017:1441-1 — Security update for postgresql93</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2017:1441-1</link>
      <description>&lt;p&gt;Security update for postgresql93&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for postgresql93&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2017:1441-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-7485</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7485</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: postgresql-9.3, Ubuntu:16.04:LTS: postgresql-9.5&lt;/p&gt;
&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: postgresql-9.3, Ubuntu:16.04:LTS: postgresql-9.5&lt;/p&gt;
&lt;p&gt;In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7485</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1969 — PostgreSQL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1969</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in PostgreSQL ausnutzen, um Sicherheitsvorkehrungen zu umgehen oder Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in PostgreSQL ausnutzen, um Sicherheitsvorkehrungen zu umgehen oder Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1969</guid>
    </item>
  </channel>
</rss>
