« List of all CVEs

CVE-2007-6067

Published: 1/9/2008 Last updated: 8/7/2024 Reserved: 11/21/2007

Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (memory consumption) via a crafted "complex" regular expression with doubly-nested states.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (6)

conf-mingw-w64-postgresql-i686 conf-mingw-w64-postgresql-x86_64 conf-postgresql conf-tcl ocsigen-start postgresql

Products affected (1)

Product Vendor Version
n/a n/a < f22068357acc268148bd55ce77f0a3e5c86701b4

References (82)