Back

CVE-2005-0245

Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than CVE-2005-0247.

Published: Feb 1, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
postgresql postgresql * ≥ 7.3 < 7.3.10
postgresql postgresql * ≥ 7.4 < 7.4.7
postgresql postgresql 8.0

GitHub Security Advisory GHSA-8r34-wff9-3x69

Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 14.47%

Top 4% most likely to be exploited

Threat Score 34.3 / 100

Data Sources

NVD EPSS GitHub