CVE-2024-56142

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 17, 2024
Updated: Dec 18, 2024
CWE ID 22

Summary

CVE-2024-56142 is a newly discovered vulnerability affecting the pghoard PostgreSQL backup daemon and restore tool. The issue allows an attacker to gain disk access with pghoard privileges, potentially enabling unintended path traversal and sensitive information disclosure. Depending on the assigned permissions and privileges, the impact could be severe. Affected users are strongly advised to upgrade to post-2.2.2a releases as soon as possible, as no known workarounds exist for this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share