Unrated severityNVD Advisory· Published Jan 17, 2003· Updated Apr 16, 2026
CVE-2002-1401
CVE-2002-1401
Description
Buffer overflows in (1) circle_poly, (2) path_encode and (3) path_add (also incorrectly identified as path_addr) for PostgreSQL 7.2.3 and earlier allow attackers to cause a denial of service and possibly execute arbitrary code, possibly as a result of an integer overflow.
Affected products
11cpe:2.3:a:postgresql:postgresql:6.3.2:*:*:*:*:*:*:*+ 10 more
- cpe:2.3:a:postgresql:postgresql:6.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:6.5.3:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.2:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:postgresql:postgresql:7.2.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.debian.org/security/2002/dsa-165nvdPatchVendor Advisory
- archives.postgresql.org/pgsql-hackers/2002-08/msg02047.phpnvdVendor Advisory
- archives.postgresql.org/pgsql-hackers/2002-08/msg02081.phpnvd
- distro.conectiva.com.br/atualizacoes/nvd
- secunia.com/advisories/8034nvd
- www.redhat.com/support/errata/RHSA-2003-001.htmlnvd
News mentions
0No linked articles in our index yet.