{"id":"CVE-2017-7547","details":"PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attackers to retrieve passwords from the user mappings defined by the foreign server owners without actually having the privileges to do so.","modified":"2026-03-15T22:17:53.237856Z","published":"2017-08-16T18:29:00.257Z","related":["MGASA-2017-0316","SUSE-SU-2017:2236-1","SUSE-SU-2017:2258-1","SUSE-SU-2017:2355-1","SUSE-SU-2017:2356-1"],"references":[{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/201710-06"},{"type":"ADVISORY","url":"https://www.postgresql.org/about/news/1772/"},{"type":"ADVISORY","url":"http://www.securitytracker.com/id/1039142"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:2677"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:2678"},{"type":"ADVISORY","url":"http://www.debian.org/security/2017/dsa-3935"},{"type":"ADVISORY","url":"http://www.debian.org/security/2017/dsa-3936"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/100275"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:2728"}],"affected":[{"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-7547.json","unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"9.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.1"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.3"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.4"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.5"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.6"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.7"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.8"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.9"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.10"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.11"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.12"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.13"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.14"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.15"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.16"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.17"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.18"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.19"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.20"}]},{"events":[{"introduced":"0"},{"last_affected":"9.2.21"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.1"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.3"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.4"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.5"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.6"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.7"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.8"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.9"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.10"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.11"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.12"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.13"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.14"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.15"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.16"}]},{"events":[{"introduced":"0"},{"last_affected":"9.3.17"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.1"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.3"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.4"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.5"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.6"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.7"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.8"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.9"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.10"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.11"}]},{"events":[{"introduced":"0"},{"last_affected":"9.4.12"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.1."}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.3"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.4"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.5"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.6"}]},{"events":[{"introduced":"0"},{"last_affected":"9.5.7"}]},{"events":[{"introduced":"0"},{"last_affected":"9.6"}]},{"events":[{"introduced":"0"},{"last_affected":"9.6.1"}]},{"events":[{"introduced":"0"},{"last_affected":"9.6.2"}]},{"events":[{"introduced":"0"},{"last_affected":"9.6.3"}]}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}