PostgreSQL (pgsql) 7.4.x, 7.2.x, and other versions allows local users to load arbitrary shared libraries and execute code via the LOAD extension.
http://www.trustix.org/errata/2005/0003/
http://www.redhat.com/support/errata/RHSA-2005-150.html
http://www.redhat.com/support/errata/RHSA-2005-138.html
http://www.debian.org/security/2005/dsa-668
http://security.gentoo.org/glsa/glsa-200502-08.xml
http://secunia.com/advisories/12948
http://marc.info/?l=bugtraq&m=110726899107148&w=2
http://archives.postgresql.org/pgsql-bugs/2005-01/msg00269.php
http://archives.postgresql.org/pgsql-announce/2005-02/msg00000.php
Source: Mitre, NVD
Published: 2005-05-02
Updated: 2025-04-03
Base Score: 4.3
Vector: CVSS2#AV:L/AC:L/Au:S/C:P/I:P/A:P
Severity: Medium
Base Score: 7.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.00116