CVE-2017-7546: Debian Linux

Critical severity, CVSS 9.8. EPSS: 61.6% chance of exploitation in the next 30 days.

PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to incorrect authentication flaw allowing remote attackers to gain access to database accounts with an empty password.

Affected products

  • Debian Debian Linux: version 9.0 only
  • PostgreSQL PostgreSQL: version 9.2 only; version 9.2.1 only; version 9.2.2 only; version 9.2.3 only; version 9.2.4 only; version 9.2.5 only; …

Published 2017-08-16. Last modified 2026-06-17.