CVE-2014-0062: PostgreSQL
Medium severity, CVSS 4.9. EPSS: 3% chance of exploitation in the next 30 days.
Race condition in the (1) CREATE INDEX and (2) unspecified ALTER TABLE commands in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allows remote authenticated users to create an unauthorized index or read portions of unauthorized tables by creating or deleting a table with the same name during the timing window.
Affected products
- PostgreSQL PostgreSQL: up to and including 8.4.19; version 8.4.1 only; version 8.4.2 only; version 8.4.3 only; version 8.4.4 only; version 8.4.5 only; …
Published 2014-03-31. Last modified 2026-06-17.