CVE-2006-2313
Publication date 24 May 2006
Last updated 24 July 2024
Ubuntu priority
PostgreSQL 8.1.x before 8.1.4, 8.0.x before 8.0.8, 7.4.x before 7.4.13, 7.3.x before 7.3.15, and earlier versions allows context-dependent attackers to bypass SQL injection protection methods in applications via invalid encodings of multibyte characters, aka one variant of “Encoding-Based SQL Injection.”
Status
Package | Ubuntu Release | Status |
---|---|---|
postgresql | 7.04 feisty | Not in release |
6.10 edgy |
Not affected
|
|
6.06 LTS dapper |
Not affected
|
|
postgresql-7.4 | 7.04 feisty | Not in release |
6.10 edgy |
Fixed 7.4.13-4
|
|
6.06 LTS dapper | Ignored end of life, was needed | |
postgresql-8.1 | 7.04 feisty |
Fixed 8.1.8-1ubuntu3
|
6.10 edgy |
Fixed 8.1.9-0ubuntu0.6.10
|
|
6.06 LTS dapper |
Fixed 8.1.9-0ubuntu0.6.06
|
|
postgresql-8.2 | 7.04 feisty |
Fixed 8.2.4-0ubuntu0.7.04
|
6.10 edgy | Not in release | |
6.06 LTS dapper | Not in release |