DescriptionMurray McAllister
2014-02-14 07:43:32 UTC
It was found that the chkpass extension did not check the result of a call to crypt(). An authenticated database user could possibly trigger this flaw and cause PostgreSQL to crash.
Acknowledgements:
Red Hat would like to thank the PostgreSQL project for reporting this issue. Upstream acknowledges Honza Horak and Bruce Momjian as the original reporters.