发布于3月6日3月6日 Members Alpine Linux: CVE-2022-41862: Vulnerability in Multiple Components Severity 4 CVSS (AV:N/AC:M/Au:N/C:P/I:N/A:N) Published 03/03/2023 Created 08/23/2024 Added 08/22/2024 Modified 10/02/2024 Description In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes. Solution(s) alpine-linux-upgrade-postgresql alpine-linux-upgrade-postgresql13 alpine-linux-upgrade-postgresql14 alpine-linux-upgrade-postgresql12 alpine-linux-upgrade-postgresql15 References https://attackerkb.com/topics/cve-2022-41862 CVE - 2022-41862 https://security.alpinelinux.org/vuln/CVE-2022-41862