vulnerability

Huawei EulerOS: CVE-2017-7486: postgresql security update

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
May 12, 2017
Added
Jan 18, 2018
Modified
Aug 13, 2025

Description

It was found that the pg_user_mappings view could disclose information about user mappings to a foreign database to non-administrative database users. A database user with USAGE privilege for this mapping could, when querying the view, obtain user mapping data, such as the username and password used to connect to the foreign database.

Solutions

huawei-euleros-2_0_sp2-upgrade-postgresqlhuawei-euleros-2_0_sp2-upgrade-postgresql-contribhuawei-euleros-2_0_sp2-upgrade-postgresql-develhuawei-euleros-2_0_sp2-upgrade-postgresql-docshuawei-euleros-2_0_sp2-upgrade-postgresql-libshuawei-euleros-2_0_sp2-upgrade-postgresql-plperlhuawei-euleros-2_0_sp2-upgrade-postgresql-plpythonhuawei-euleros-2_0_sp2-upgrade-postgresql-pltclhuawei-euleros-2_0_sp2-upgrade-postgresql-serverhuawei-euleros-2_0_sp2-upgrade-postgresql-test
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.