Synced 18 Jun 2026 05:58 UTC Account
← All products

CVE-2002-1642

HIGH severity · CVSS 7.2
7.2CVSS HIGH

Summary

PostgreSQL 7.2.1 and 7.2.2 allows local users to delete transaction log (pg_clog) data and cause a denial of service (data loss) via the VACUUM command.

Impact & exploitability

Attack vectorLocal
Attack complexityLow
Privileges required
User interaction
Confidentiality impact
Integrity impact
Availability impact
Exploit probability (EPSS)0%

AV:L/AC:L/Au:N/C:C/I:C/A:C

Affected products we track (1)

Recommendation

Apply the vendor fix promptly. Open any affected product above for its exact safe version.

Official patch: http://archives.postgresql.org/pgsql-announce/2002-10/msg00000.php ↗