Fedora postgresql CVE-2019-10208 SQL Injection Vulnerability

description-logoDescription

A flaw was discovered in postgresql where arbitrary SQL statements can be executed given a suitable SECURITY DEFINER function. An attacker, with EXECUTE permission on the function, can execute arbitrary SQL as the owner of the function.

affected-products-logoAffected Applications

postgresql

CVE References

CVE-2019-10208