Back
CVE-2002-1399
Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier, and possibly later versions before 7.2.3, with unknown impact, based on an invalid integer input which is processed as a different data type, as demonstrated using cash_out(2).
Published: Jan 17, 2003
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (9)
| Vendor | Product | Version |
|---|---|---|
| postgresql | postgresql | 6.3.2 |
| postgresql | postgresql | 6.5.3 |
| postgresql | postgresql | 7.0.3 |
| postgresql | postgresql | 7.1 |
| postgresql | postgresql | 7.1.1 |
| postgresql | postgresql | 7.1.2 |
| postgresql | postgresql | 7.1.3 |
| postgresql | postgresql | 7.2 |
| postgresql | postgresql | 7.2.1 |
GitHub Security Advisory GHSA-927w-qm35-gg94
Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier,...
References (6)
- http://archives.postgresql.org/pgsql-hackers/2002-08/msg00708.php
- http://archives.postgresql.org/pgsql-hackers/2002-08/msg00713.php
- http://marc.info/?l=bugtraq&m=102978152712430&w=2
- http://archives.postgresql.org/pgsql-hackers/2002-08/msg00708.php
- http://archives.postgresql.org/pgsql-hackers/2002-08/msg00713.php
- http://marc.info/?l=bugtraq&m=102978152712430&w=2
Risk Scores
CVSS Score
10.0 / 10
EPSS Score
1.79%
Top 24% most likely to be exploited
Threat Score
40.5 / 100
Data Sources
NVD
EPSS
GitHub