asyncpg
An asyncio PostgreSQL driver
Activity
- Latest release
- 9mo ago
- Total releases
- 43
- Cadence
- ~44 days
- Last 12 months
- 1
Details
- License
- Apache-2.0
- First release
- Jul 18, 2016
| Version | Released | |
|---|---|---|
0.31.0
minor
|
0.31.0
minor
Dependencies (3)
|
|
0.30.0
minor
|
0.30.0
minor
Dependencies (11)
+ 3 more |
|
0.29.0
minor
|
0.29.0
minor
Dependencies (6)
|
|
0.28.0
minor
|
0.28.0
minor
Dependencies (6)
|
|
0.27.0
minor
|
0.27.0
minor
Dependencies (8)
|
|
0.26.0
minor
|
0.26.0
minor
Dependencies (9)
+ 1 more |
|
0.25.0
minor
|
0.25.0
minor
Dependencies (9)
+ 1 more |
|
0.24.0
minor
|
0.24.0
minor
Dependencies (9)
+ 1 more |
|
0.23.0
minor
|
0.23.0
minor
Dependencies (9)
+ 1 more |
|
0.22.0
minor
|
0.22.0
minor
Dependencies (9)
+ 1 more |
|
0.21.0
minor
|
0.21.0
minor
Dependencies (8)
|
|
0.20.1
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.20.1
patch
Dependencies (8)
|
|
0.20.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.20.0
minor
Dependencies (8)
|
|
0.19.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.19.0
minor
Dependencies (7)
|
|
0.18.3
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.18.3
patch
Dependencies (7)
|
|
0.18.2
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.18.2
patch
Dependencies (7)
|
|
0.18.1
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.18.1
patch
Dependencies (7)
|
|
0.18.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.18.0
minor
Dependencies (7)
|
|
0.17.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.17.0
minor
Dependencies (7)
|
|
0.16.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.16.0
minor
Dependencies (7)
|
|
0.15.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.15.0
minor
|
|
0.14.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.14.0
minor
|
|
0.13.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.13.0
minor
|
|
0.12.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.12.0
minor
|
|
0.11.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.11.0
minor
|
|
0.10.1
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.10.1
patch
|
|
0.10.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.10.0
minor
|
|
0.9.0.dev1
pre
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.9.0.dev1
pre
|
|
0.9.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.9.0
minor
|
|
0.8.4
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.8.4
patch
|
|
0.8.3
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.8.3
patch
|
|
0.8.2
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.8.2
patch
|
|
0.8.1
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.8.1
patch
|
|
0.8.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.8.0
minor
|
|
0.7.0
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.7.0
minor
|
|
0.6.3
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.6.3
patch
|
|
0.6.2
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.6.2
patch
|
|
0.6.1
minor
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.6.1
minor
|
|
0.5.4
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.5.4
patch
|
|
0.5.3
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.5.3
patch
|
|
0.5.2
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.5.2
patch
|
|
0.5.1
patch
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.5.1
patch
|
|
0.5.0
initial
1 CVE
CVE-2020-17446
GHSA-2xpj-f5g2-8p7m
PYSEC-2020-24
Apr 20, 2021
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
Network
Low
None
None
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder. Affected versions
0.10.0
0.10.1
0.11.0
0.12.0
0.13.0
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.18.1
0.18.2
+ 20 more Show less
0.18.3
0.19.0
0.20.0
0.20.1
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.6.1
0.6.2
0.6.3
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4
0.9.0
0.9.0.dev1
Fixed in
0.21.0
References
Updated Sep 12, 2024 · Source: OSV.dev |
0.5.0
initial
|