Risk | Medium |
Patch available | YES |
Number of vulnerabilities | 3 |
CVE-ID | CVE-2019-10130 CVE-2019-10208 CVE-2020-14350 |
CWE-ID | CWE-264 CWE-426 |
Exploitation vector | Network |
Public exploit | N/A |
Vulnerable software Subscribe |
Amazon Linux AMI Operating systems & Components / Operating system |
Vendor | Amazon Web Services |
Security Bulletin
This security bulletin contains information about 3 vulnerabilities.
EUVDB-ID: #VU18424
Risk: Low
CVSSv3.1: 3.8 [CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C]
CVE-ID: CVE-2019-10130
CWE-ID:
CWE-264 - Permissions, Privileges, and Access Controls
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to bypass certain security restrictions.
The vulnerability exists due to incorrect implementation of row security policies. A remote attacker can use statistics, generated for tables to bypass row security policies and gain access to restricted rows.
MitigationUpdate the affected packages:
i686:Vulnerable software versions
postgresql95-test-9.5.23-1.81.amzn1.i686
postgresql95-server-9.5.23-1.81.amzn1.i686
postgresql95-plpython26-9.5.23-1.81.amzn1.i686
postgresql95-contrib-9.5.23-1.81.amzn1.i686
postgresql95-static-9.5.23-1.81.amzn1.i686
postgresql95-docs-9.5.23-1.81.amzn1.i686
postgresql95-libs-9.5.23-1.81.amzn1.i686
postgresql95-9.5.23-1.81.amzn1.i686
postgresql95-debuginfo-9.5.23-1.81.amzn1.i686
postgresql95-devel-9.5.23-1.81.amzn1.i686
postgresql95-plpython27-9.5.23-1.81.amzn1.i686
postgresql95-plperl-9.5.23-1.81.amzn1.i686
src:
postgresql95-9.5.23-1.81.amzn1.src
x86_64:
postgresql95-docs-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython27-9.5.23-1.81.amzn1.x86_64
postgresql95-libs-9.5.23-1.81.amzn1.x86_64
postgresql95-static-9.5.23-1.81.amzn1.x86_64
postgresql95-test-9.5.23-1.81.amzn1.x86_64
postgresql95-plperl-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython26-9.5.23-1.81.amzn1.x86_64
postgresql95-9.5.23-1.81.amzn1.x86_64
postgresql95-debuginfo-9.5.23-1.81.amzn1.x86_64
postgresql95-server-9.5.23-1.81.amzn1.x86_64
postgresql95-contrib-9.5.23-1.81.amzn1.x86_64
postgresql95-devel-9.5.23-1.81.amzn1.x86_64
Amazon Linux AMI: All versions
External linkshttp://alas.aws.amazon.com/ALAS-2020-1442.html
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote authenticated user via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU20003
Risk: Low
CVSSv3.1: 3.3 [CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N/E:U/RL:O/RC:C]
CVE-ID: CVE-2019-10208
CWE-ID:
CWE-264 - Permissions, Privileges, and Access Controls
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to way PostreSQL processes SECURITY DEFINER
functions. A privileged attacker with EXECUTE permission, which must itself contain a function call having inexact argument type match, can execute arbitrary SQL query under the identity of the function owner.
Update the affected packages:
i686:Vulnerable software versions
postgresql95-test-9.5.23-1.81.amzn1.i686
postgresql95-server-9.5.23-1.81.amzn1.i686
postgresql95-plpython26-9.5.23-1.81.amzn1.i686
postgresql95-contrib-9.5.23-1.81.amzn1.i686
postgresql95-static-9.5.23-1.81.amzn1.i686
postgresql95-docs-9.5.23-1.81.amzn1.i686
postgresql95-libs-9.5.23-1.81.amzn1.i686
postgresql95-9.5.23-1.81.amzn1.i686
postgresql95-debuginfo-9.5.23-1.81.amzn1.i686
postgresql95-devel-9.5.23-1.81.amzn1.i686
postgresql95-plpython27-9.5.23-1.81.amzn1.i686
postgresql95-plperl-9.5.23-1.81.amzn1.i686
src:
postgresql95-9.5.23-1.81.amzn1.src
x86_64:
postgresql95-docs-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython27-9.5.23-1.81.amzn1.x86_64
postgresql95-libs-9.5.23-1.81.amzn1.x86_64
postgresql95-static-9.5.23-1.81.amzn1.x86_64
postgresql95-test-9.5.23-1.81.amzn1.x86_64
postgresql95-plperl-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython26-9.5.23-1.81.amzn1.x86_64
postgresql95-9.5.23-1.81.amzn1.x86_64
postgresql95-debuginfo-9.5.23-1.81.amzn1.x86_64
postgresql95-server-9.5.23-1.81.amzn1.x86_64
postgresql95-contrib-9.5.23-1.81.amzn1.x86_64
postgresql95-devel-9.5.23-1.81.amzn1.x86_64
Amazon Linux AMI: All versions
External linkshttp://alas.aws.amazon.com/ALAS-2020-1442.html
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote authenticated privileged user via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU45749
Risk: Medium
CVSSv3.1: 4.1 [CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C]
CVE-ID: CVE-2020-14350
CWE-ID:
CWE-426 - Untrusted Search Path
Exploit availability: No
DescriptionThe vulnerability allows a remote user to escalate privileges within the database.
The vulnerability exists due to the way PostgreSQL handles CREATE EXTENSION
statements. A remote user with permission to create objects in the new extension's schema
or a schema of a prerequisite extension can execute arbitrary SQL functions under the identity of the superuser in certain cases.
Update the affected packages:
i686:Vulnerable software versions
postgresql95-test-9.5.23-1.81.amzn1.i686
postgresql95-server-9.5.23-1.81.amzn1.i686
postgresql95-plpython26-9.5.23-1.81.amzn1.i686
postgresql95-contrib-9.5.23-1.81.amzn1.i686
postgresql95-static-9.5.23-1.81.amzn1.i686
postgresql95-docs-9.5.23-1.81.amzn1.i686
postgresql95-libs-9.5.23-1.81.amzn1.i686
postgresql95-9.5.23-1.81.amzn1.i686
postgresql95-debuginfo-9.5.23-1.81.amzn1.i686
postgresql95-devel-9.5.23-1.81.amzn1.i686
postgresql95-plpython27-9.5.23-1.81.amzn1.i686
postgresql95-plperl-9.5.23-1.81.amzn1.i686
src:
postgresql95-9.5.23-1.81.amzn1.src
x86_64:
postgresql95-docs-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython27-9.5.23-1.81.amzn1.x86_64
postgresql95-libs-9.5.23-1.81.amzn1.x86_64
postgresql95-static-9.5.23-1.81.amzn1.x86_64
postgresql95-test-9.5.23-1.81.amzn1.x86_64
postgresql95-plperl-9.5.23-1.81.amzn1.x86_64
postgresql95-plpython26-9.5.23-1.81.amzn1.x86_64
postgresql95-9.5.23-1.81.amzn1.x86_64
postgresql95-debuginfo-9.5.23-1.81.amzn1.x86_64
postgresql95-server-9.5.23-1.81.amzn1.x86_64
postgresql95-contrib-9.5.23-1.81.amzn1.x86_64
postgresql95-devel-9.5.23-1.81.amzn1.x86_64
Amazon Linux AMI: All versions
External linkshttp://alas.aws.amazon.com/ALAS-2020-1442.html
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote authenticated privileged user via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.