Medium severity6.5NVD Advisory· Published Jul 30, 2019· Updated Jun 17, 2026
CVE-2019-10129
CVE-2019-10129
Description
A vulnerability was found in postgresql versions 11.x prior to 11.3. Using a purpose-crafted insert to a partitioned table, an attacker can read arbitrary bytes of server memory. In the default configuration, any user can create a partitioned table suitable for this attack. (Exploit prerequisites are the same as for CVE-2018-1052).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
411.x prior to 11.3+ 2 more
- (no CPE)range: 11.x prior to 11.3
- (no CPE)range: <11.3
- cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:*range: >=11.0,<11.3
Patches
Vulnerability mechanics
References
3- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- security.gentoo.org/glsa/202003-03nvdThird Party Advisory
- www.postgresql.org/about/news/1939/nvdVendor Advisory
News mentions
0No linked articles in our index yet.