CVE-2017-14798: PostgreSQL

High severity, CVSS 7.0. EPSS: 1% chance of exploitation in the next 30 days.

A race condition in the postgresql init script could be used by attackers able to access the postgresql account to escalate their privileges to root.

Affected products

  • PostgreSQL PostgreSQL: before 9.4-0.5.3.1 (fixed in 9.4-0.5.3.1)
  • Suse Suse Linux Enterprise Server: version 11 only

Published 2018-03-01. Last modified 2026-06-17.