Input validation error in Postgresql JDBC Driver - CVE-2022-26520

 

Input validation error in Postgresql JDBC Driver - CVE-2022-26520

Published: May 2, 2022


Vulnerability identifier: #VU62716
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-26520
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to create arbitrary files on the system.

The vulnerability exists due to insufficient validation of user-supplied input when handling jdbc URL or its properties. A remote attacker can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties.

Successful exploitation of the vulnerability may allow an attacker to create and executable arbitraru JSP file under a Tomcat web root.


Affected software

Postgresql JDBC Driver
IBM i Modernization Engine for Lifecycle Integration
IBM Business Automation Manager Open Editions
InfoSphere Data Replication
IBM Spectrum Copy Data Management
IBM Tivoli Netcool Impact
IBM Security Verify Governance
Netcool Operations Insight
Red Hat Integration - Service Registry
SUSE Manager Proxy
SUSE Manager Server
SUSE Linux Enterprise Module for SUSE Manager Server
SUSE Manager Retail Branch Server
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Module for Server Applications
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Server
openSUSE Leap
Red Hat Process Automation Manager (formerly JBoss BPM Suite)
Zoho ManageEngine OpManager
Cloud Pak for Security (CP4S)
prometheus-formula
golang-github-QubitProducts-exporter_exporter
golang-github-lusitaniae-apache_exporter
golang-github-lusitaniae-apache_exporter-debuginfo
prometheus-exporters-formula
subscription-matcher
golang-github-prometheus-node_exporter
spacewalk-setup
release-notes-susemanager-proxy
release-notes-susemanager
spacecmd
spacewalk-utils
spacewalk-utils-extras
susemanager-schema
spacewalk-backend-server
spacewalk-backend-xmlrpc
spacewalk-backend-xml-export-libs
spacewalk-backend-tools
spacewalk-backend-sql-postgresql
spacewalk-backend-sql
spacewalk-backend-package-push-server
spacewalk-backend-iss-export
spacewalk-backend-iss
spacewalk-backend-config-files-tool
spacewalk-backend-config-files-common
spacewalk-backend-config-files
spacewalk-backend-applet
spacewalk-backend-app
spacewalk-backend
susemanager-web-libs
spacewalk-html
spacewalk-base-minimal-config
spacewalk-base-minimal
spacewalk-base
susemanager
susemanager-tools
uyuni-config-modules
susemanager-sls
spacewalk-java
spacewalk-java-config
spacewalk-java-lib
spacewalk-java-postgresql
spacewalk-taskomatic
patterns-suma_server
patterns-suma_retail
susemanager-docs_en-pdf
susemanager-docs_en
susemanager-doc-indexes
libpgjava (Debian package)
postgresql-jdbc
postgresql-jdbc-javadoc
py27-compat-salt

How to mitigate CVE-2022-26520

Install updates from vendor's website.

Postgresql JDBC Driver - update to 42.3.3
IBM i Modernization Engine for Lifecycle Integration - update to 1.0.1
IBM Spectrum Copy Data Management - update to 2.2.16
Red Hat Process Automation Manager (formerly JBoss BPM Suite) - update to 7.13.1
IBM Tivoli Netcool Impact - update to 7.1.0.25
IBM Business Automation Manager Open Editions - update to 8.0.1
IBM Security Verify Governance - update to 10.0.1.0.3
Zoho ManageEngine OpManager - update to 12.6 126147
prometheus-formula - update to 0.3.7-150200.3.21.2
golang-github-QubitProducts-exporter_exporter - update to 0.4.0-150200.6.12.2
golang-github-lusitaniae-apache_exporter - update to 0.7.0-150200.2.6.2
golang-github-lusitaniae-apache_exporter-debuginfo - update to 0.7.0-150200.2.6.2
prometheus-exporters-formula - update to 0.9.5-150200.3.31.2
subscription-matcher - update to 0.28-150200.3.15.2
golang-github-prometheus-node_exporter - update to 1.3.0-150200.3.9.3
Netcool Operations Insight - update to 1.6.8
Cloud Pak for Security (CP4S) - update to 1.10.10.0
Red Hat Integration - Service Registry - update to 2.3.0
spacewalk-setup - update to 4.1.11-150200.3.18.2
release-notes-susemanager-proxy - update to 4.1.15-150200.3.56.1
release-notes-susemanager - update to 4.1.15-150200.3.80.1
spacecmd - update to 4.1.18-150200.4.39.3
spacewalk-utils - update to 4.1.20-150200.3.30.2
spacewalk-utils-extras - update to 4.1.20-150200.3.30.2
susemanager-schema - update to 4.1.26-150200.3.45.4
spacewalk-backend-server - update to 4.1.31-150200.4.50.4
spacewalk-backend-xmlrpc - update to 4.1.31-150200.4.50.4
spacewalk-backend-xml-export-libs - update to 4.1.31-150200.4.50.4
spacewalk-backend-tools - update to 4.1.31-150200.4.50.4
spacewalk-backend-sql-postgresql - update to 4.1.31-150200.4.50.4
spacewalk-backend-sql - update to 4.1.31-150200.4.50.4
spacewalk-backend-package-push-server - update to 4.1.31-150200.4.50.4
spacewalk-backend-iss-export - update to 4.1.31-150200.4.50.4
spacewalk-backend-iss - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files-tool - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files-common - update to 4.1.31-150200.4.50.4
spacewalk-backend-config-files - update to 4.1.31-150200.4.50.4
spacewalk-backend-applet - update to 4.1.31-150200.4.50.4
spacewalk-backend-app - update to 4.1.31-150200.4.50.4
spacewalk-backend - update to 4.1.31-150200.4.50.4
susemanager-web-libs - update to 4.1.34-150200.3.47.6
spacewalk-html - update to 4.1.34-150200.3.47.6
spacewalk-base-minimal-config - update to 4.1.34-150200.3.47.6
spacewalk-base-minimal - update to 4.1.34-150200.3.47.6
spacewalk-base - update to 4.1.34-150200.3.47.6
susemanager - update to 4.1.36-150200.3.52.1
susemanager-tools - update to 4.1.36-150200.3.52.1
uyuni-config-modules - update to 4.1.36-150200.3.64.2
susemanager-sls - update to 4.1.36-150200.3.64.2
spacewalk-java - update to 4.1.46-150200.3.71.5
spacewalk-java-config - update to 4.1.46-150200.3.71.5
spacewalk-java-lib - update to 4.1.46-150200.3.71.5
spacewalk-java-postgresql - update to 4.1.46-150200.3.71.5
spacewalk-taskomatic - update to 4.1.46-150200.3.71.5
patterns-suma_server - update to 4.1-150200.6.12.2
patterns-suma_retail - update to 4.1-150200.6.12.2
susemanager-docs_en-pdf - update to 4.1-150200.11.55.2
susemanager-docs_en - update to 4.1-150200.11.55.2
susemanager-doc-indexes - update to 4.1-150200.11.55.4
libpgjava (Debian package) - addressed in versions 42.2.5-2+deb10u1, 42.2.15-1+deb11u1
postgresql-jdbc - addressed in versions 42.2.10-150200.3.8.2, 42.2.25-150400.3.3.2
postgresql-jdbc-javadoc - update to 42.2.25-150400.3.3.2
py27-compat-salt - update to 3000.3-150200.6.24.2

External References

Related Security Bulletins