CVE-2014-0067: Apple Mac OS X
Medium severity, CVSS 4.6. EPSS: 0.5% chance of exploitation in the next 30 days.
The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by leveraging access to this cluster.
Affected products
- Apple Mac OS X: version 10.10.4 only
- Apple Mac OS X Server: version 5.0.3 only
- PostgreSQL PostgreSQL: up to and including 8.4.19; version 8.4.1 only; version 8.4.2 only; version 8.4.3 only; version 8.4.4 only; version 8.4.5 only; …
Published 2014-03-31. Last modified 2026-06-17.