Input validation error in Postgresql JDBC Driver - CVE-2022-26520
Published: May 2, 2022
Vulnerability details
The vulnerability allows a remote attacker to create arbitrary files on the system.
The vulnerability exists due to insufficient validation of user-supplied input when handling jdbc URL or its properties. A remote attacker can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties.
Successful exploitation of the vulnerability may allow an attacker to create and executable arbitraru JSP file under a Tomcat web root.
Affected software
IBM i Modernization Engine for Lifecycle Integration
IBM Business Automation Manager Open Editions
InfoSphere Data Replication
IBM Spectrum Copy Data Management
IBM Tivoli Netcool Impact
IBM Security Verify Governance
Netcool Operations Insight
Red Hat Integration - Service Registry
SUSE Manager Proxy
SUSE Manager Server
SUSE Linux Enterprise Module for SUSE Manager Server
SUSE Manager Retail Branch Server
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Module for Server Applications
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Server
openSUSE Leap
Red Hat Process Automation Manager (formerly JBoss BPM Suite)
Zoho ManageEngine OpManager
Cloud Pak for Security (CP4S)
prometheus-formula
golang-github-QubitProducts-exporter_exporter
golang-github-lusitaniae-apache_exporter
golang-github-lusitaniae-apache_exporter-debuginfo
prometheus-exporters-formula
subscription-matcher
golang-github-prometheus-node_exporter
spacewalk-setup
release-notes-susemanager-proxy
release-notes-susemanager
spacecmd
spacewalk-utils
spacewalk-utils-extras
susemanager-schema
spacewalk-backend-server
spacewalk-backend-xmlrpc
spacewalk-backend-xml-export-libs
spacewalk-backend-tools
spacewalk-backend-sql-postgresql
spacewalk-backend-sql
spacewalk-backend-package-push-server
spacewalk-backend-iss-export
spacewalk-backend-iss
spacewalk-backend-config-files-tool
spacewalk-backend-config-files-common
spacewalk-backend-config-files
spacewalk-backend-applet
spacewalk-backend-app
spacewalk-backend
susemanager-web-libs
spacewalk-html
spacewalk-base-minimal-config
spacewalk-base-minimal
spacewalk-base
susemanager
susemanager-tools
uyuni-config-modules
susemanager-sls
spacewalk-java
spacewalk-java-config
spacewalk-java-lib
spacewalk-java-postgresql
spacewalk-taskomatic
patterns-suma_server
patterns-suma_retail
susemanager-docs_en-pdf
susemanager-docs_en
susemanager-doc-indexes
libpgjava (Debian package)
postgresql-jdbc
postgresql-jdbc-javadoc
py27-compat-salt
How to mitigate CVE-2022-26520
IBM i Modernization Engine for Lifecycle Integration - update to 1.0.1
IBM Spectrum Copy Data Management - update to 2.2.16
Red Hat Process Automation Manager (formerly JBoss BPM Suite) - update to 7.13.1
IBM Tivoli Netcool Impact - update to 7.1.0.25
IBM Business Automation Manager Open Editions - update to 8.0.1
IBM Security Verify Governance - update to 10.0.1.0.3
Zoho ManageEngine OpManager - update to 12.6 126147
prometheus-formula - update to 0.3.7-150200.3.21.2
golang-github-QubitProducts-exporter_exporter - update to 0.4.0-150200.6.12.2
golang-github-lusitaniae-apache_exporter - update to 0.7.0-150200.2.6.2
golang-github-lusitaniae-apache_exporter-debuginfo - update to 0.7.0-150200.2.6.2
prometheus-exporters-formula - update to 0.9.5-150200.3.31.2
subscription-matcher - update to 0.28-150200.3.15.2
golang-github-prometheus-node_exporter - update to 1.3.0-150200.3.9.3
Netcool Operations Insight - update to 1.6.8
Cloud Pak for Security (CP4S) - update to 1.10.10.0
Red Hat Integration - Service Registry - update to 2.3.0
spacewalk-setup - update to 4.1.11-150200.3.18.2
release-notes-susemanager-proxy - update to 4.1.15-150200.3.56.1
release-notes-susemanager - update to 4.1.15-150200.3.80.1
spacecmd - update to 4.1.18-150200.4.39.3
spacewalk-utils - update to 4.1.20-150200.3.30.2
spacewalk-utils-extras - update to 4.1.20-150200.3.30.2
susemanager-schema - update to 4.1.26-150200.3.45.4
spacewalk-backend-server - update to 4.1.31-150200.4.50.4
spacewalk-backend-xmlrpc - update to 4.1.31-150200.4.50.4
spacewalk-backend-xml-export-libs - update to 4.1.31-150200.4.50.4
spacewalk-backend-tools - update to 4.1.31-150200.4.50.4
spacewalk-backend-sql-postgresql - update to 4.1.31-150200.4.50.4
spacewalk-backend-sql - update to 4.1.31-150200.4.50.4
spacewalk-backend-package-push-server - update to 4.1.31-150200.4.50.4
spacewalk-backend-iss-export - update to 4.1.31-150200.4.50.4
spacewalk-backend-iss - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files-tool - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files-common - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files - update to 4.1.31-150200.4.50.4
spacewalk-backend-applet - update to 4.1.31-150200.4.50.4
spacewalk-backend-app - update to 4.1.31-150200.4.50.4
spacewalk-backend - update to 4.1.31-150200.4.50.4
susemanager-web-libs - update to 4.1.34-150200.3.47.6
spacewalk-html - update to 4.1.34-150200.3.47.6
spacewalk-base-minimal-config - update to 4.1.34-150200.3.47.6
spacewalk-base-minimal - update to 4.1.34-150200.3.47.6
spacewalk-base - update to 4.1.34-150200.3.47.6
susemanager - update to 4.1.36-150200.3.52.1
susemanager-tools - update to 4.1.36-150200.3.52.1
uyuni-config-modules - update to 4.1.36-150200.3.64.2
susemanager-sls - update to 4.1.36-150200.3.64.2
spacewalk-java - update to 4.1.46-150200.3.71.5
spacewalk-java-config - update to 4.1.46-150200.3.71.5
spacewalk-java-lib - update to 4.1.46-150200.3.71.5
spacewalk-java-postgresql - update to 4.1.46-150200.3.71.5
spacewalk-taskomatic - update to 4.1.46-150200.3.71.5
patterns-suma_server - update to 4.1-150200.6.12.2
patterns-suma_retail - update to 4.1-150200.6.12.2
susemanager-docs_en-pdf - update to 4.1-150200.11.55.2
susemanager-docs_en - update to 4.1-150200.11.55.2
susemanager-doc-indexes - update to 4.1-150200.11.55.4
libpgjava (Debian package) - addressed in versions 42.2.5-2+deb10u1, 42.2.15-1+deb11u1
postgresql-jdbc - addressed in versions 42.2.10-150200.3.8.2, 42.2.25-150400.3.3.2
postgresql-jdbc-javadoc - update to 42.2.25-150400.3.3.2
py27-compat-salt - update to 3000.3-150200.6.24.2
External References
Related Security Bulletins
- Remote code execution in Postgresql JDBC driver
- Remote code execution in IBM Spectrum Copy Data Management
- SUSE update for Recommended update for SUSE Manager 4.1.15 Release Notes
- SUSE update for SUSE Manager Server 4.1
- Multiple vulnerabilities in IBM i Modernization Engine for Lifecycle Integration
- Debian update for libpgjava
- SUSE update for postgresql-jdbc
- Zoho ManageEngine OpManager update for PostgreSQL and PostgreSQL JDBC Driver
- Multiple vulnerabilities in IBM Tivoli Netcool Impact
- Multiple vulnerabilities in Red Hat Process Automation Manager
- Multiple vulnerabilities in Red Hat Integration - Service registry
- Multiple vulnerabilities in IBM Business Automation Manager Open Editions
- IBM Security Verify Governance update for PostgreSQL
- Multiple vulnerabilities in IBM Cloud Pak for Security (CP4S)
- Multiple vulnerabilities in IBM InfoSphere Data Replication
- Multiple vulnerabilities in IBM Netcool Operations Insight