PublicDate: 2006-02-14 19:06:00 UTC Candidate: CVE-2006-0553 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0553 Description: PostgreSQL 8.1.0 through 8.1.2 allows authenticated database users to gain additional privileges via "knowledge of the backend protocol" using a crafted SET ROLE to other database users, a different vulnerability than CVE-2006-0678. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_postgresql: not-affected edgy_postgresql: not-affected feisty_postgresql: DNE devel_postgresql: DNE dapper_postgresql-8.1: released (8.1.9-0ubuntu0.6.06) edgy_postgresql-8.1: released (8.1.9-0ubuntu0.6.10) feisty_postgresql-8.1: released (8.1.8-1ubuntu3) devel_postgresql-8.1: released (8.1.8-1ubuntu3) dapper_postgresql-8.2: DNE edgy_postgresql-8.2: DNE feisty_postgresql-8.2: released (8.2.4-0ubuntu0.7.04) devel_postgresql-8.2: released (8.2.5-1) upstream_postgresql: needs-triage upstream_postgresql-8.1: needs-triage upstream_postgresql-8.2: needs-triage