Vulnerability in the cash_words() function for PostgreSQL 7.2 and earlier allows local users to cause a denial of service and possibly execute arbitrary code via a large negative argument, possibly triggering an integer signedness error or buffer overflow.
| Software | From | Fixed in |
|---|---|---|
| postgresql / postgresql | 7.2 | 7.2.x |
| postgresql / postgresql | 6.3.2 | 6.3.2.x |
| postgresql / postgresql | 7.1.1 | 7.1.1.x |
| postgresql / postgresql | 7.1.3 | 7.1.3.x |
| postgresql / postgresql | 7.0.3 | 7.0.3.x |
| postgresql / postgresql | 7.1 | 7.1.x |
| postgresql / postgresql | 6.5.3 | 6.5.3.x |
| postgresql / postgresql | 7.1.2 | 7.1.2.x |