Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than CVE-2005-0247.
| Software | From | Fixed in |
|---|---|---|
| postgresql / postgresql | 8.0 | 8.0.x |
| postgresql / postgresql | 7.3 | 7.3.10 |
| postgresql / postgresql | 7.4 | 7.4.7 |