Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | PostgreSQL SQL×¢ÈëÎó²î |
CVE ID | CVE-2025-1094 |
Îó²îÀàÐÍ | SQL×¢Èë | ·¢Ã÷ʱ¼ä | 2025-02-21 |
Îó²îÆÀ·Ö | 8.1 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | ¸ß | Óû§½»»¥ | ÎÞ |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
PostgreSQLÊÇÒ»¸ö¿ªÔ´¡¢Ç¿Ê¢µÄ¹ØÏµÐÍÊý¾Ý¿âÖÎÀíϵͳ£¬£¬£¬£¬£¬£¬£¬Ö§³ÖSQL±ê×¼¼°À©Õ¹£¬£¬£¬£¬£¬£¬£¬ÆÕ±éÓ¦ÓÃÓÚÆóÒµ¼¶Ó¦Óᣡ£¡£¡£¡£¡£¡£Ëü¾ß±¸¸ß¿É¿¿ÐÔ¡¢¿ÉÀ©Õ¹ÐÔ¡¢Êý¾ÝÍêÕûÐԺͲ¢·¢¿ØÖƹ¦Ð§£¬£¬£¬£¬£¬£¬£¬Ö§³Ö¶àÖÖ±à³ÌÓïÑÔºÍÀ©Õ¹»úÖÆ¡£¡£¡£¡£¡£¡£¡£PostgreSQLµÄÌØµã°üÀ¨ACIDÊÂÎñÖ§³Ö¡¢ÖØ´óÅÌÎÊÓÅ»¯¡¢JSONÊý¾ÝÀàÐÍ´¦Öóͷ£¡¢È«ÎÄËÑË÷µÈ¡£¡£¡£¡£¡£¡£¡£ËüÊÊÓÃÓÚ´ÓСÐÍÓ¦Óõ½´óÐÍÊý¾Ý¿ÍÕ»µÄÖÖÖÖ³¡¾°¡£¡£¡£¡£¡£¡£¡£
2025Äê2ÔÂ21ÈÕ£¬£¬£¬£¬£¬£¬£¬ÍòÀû¹ú¼Ê¹ÙÍø¼¯ÍÅVSRC¼à²âµ½PostgreSQLÐû²¼Á˹ØÓÚCVE-2025-1094Îó²îµÄÇ徲ͨ¸æ¡£¡£¡£¡£¡£¡£¡£Í¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬PostgreSQLµÄlibpqº¯Êý£¨ÈçPQescapeLiteral()¡¢PQescapeIdentifier()¡¢PQescapeString()ºÍPQescapeStringConn()£©ÔÚijЩʹÓÃģʽÏÂδÄÜ׼ȷ´¦Öóͷ£ÒýºÅÓï·¨£¬£¬£¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂSQL×¢ÈëÎó²î¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔͨ¹ý½á¹¹¶ñÒâÊäÈ룬£¬£¬£¬£¬£¬£¬Ê¹ÓÃÕâЩº¯ÊýµÄ·µ»ØÐ§¹ûÔÚPostgreSQL½»»¥ÖÕ¶ËpsqlÖÐÖ´ÐжñÒâSQLÓï¾ä¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬PostgreSQLÏÂÁîÐй¤¾ßÔÚÌØ¶¨×Ö·û±àÂëÇéÐÎÏ£¨Èçclient_encodingΪBIG5¡¢server_encodingΪEUC_TW»òMULE_INTERNALʱ£©Ò²¿ÉÄÜÊܵ½ÀàËÆSQL×¢Èë¹¥»÷µÄÍþв¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îµÄCVSSÆÀ·ÖΪ8.1·Ö£¬£¬£¬£¬£¬£¬£¬Îó²îÆ·¼¶Îª¸ßΣ¡£¡£¡£¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
¹Ù·½ÒÑÓÚ2025Äê2ÔÂ13ÈÕÐû²¼ÁËÐÞ¸´²¹¶¡£¬£¬£¬£¬£¬£¬£¬½¨ÒéÊÜÓ°Ïì°æ±¾µÄÓû§¾¡¿ì¾ÙÐÐÉý¼¶¡£¡£¡£¡£¡£¡£¡£ÏêϸÐÞ¸´°æ±¾ÈçÏ£º
PostgreSQL 17ÒÑÔÚ17.3°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 16ÒÑÔÚ16.7°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 15ÒÑÔÚ15.11°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 14ÒÑÔÚ14.16°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 13ÒÑÔÚ13.19°æ±¾ÖÐÐÞ¸´¸ÃÎó²î
ÏÂÔØÁ´½Ó£º
https://github.com/postgres/postgres/tags/
3.2 ÔÝʱ²½·¥
? ʹÓòÎÊý»¯ÅÌÎÊ»òÔ¤±àÒëÓï¾ä£¬£¬£¬£¬£¬£¬£¬×èÖ¹Ö±½ÓÆ´½ÓÓû§ÊäÈë¡£¡£¡£¡£¡£¡£¡£? ÑÏ¿áÑéÖ¤²¢¹ýÂËÓû§ÊäÈ룬£¬£¬£¬£¬£¬£¬×èÖ¹¶ñÒâ×Ö·û¡£¡£¡£¡£¡£¡£¡£? ÏÞÖÆÊý¾Ý¿âÓû§È¨ÏÞ£¬£¬£¬£¬£¬£¬£¬È·±£×îµÍÐëҪȨÏÞ¡£¡£¡£¡£¡£¡£¡£
3.4 ²Î¿¼Á´½Ó
https://www.postgresql.org/support/security/CVE-2025-1094/https://www.postgresql.org/support/security/CVE-2025-1094https://nvd.nist.gov/vuln/detail/CVE-2025-1094