Title:PostgreSQL < 9.5.23, 9.6.x < 9.6.19, 10.x < 10.14, 11.x < 11.9, 12.x < 12.4 Search Path Vulnerability (Linux)
Summary:PostgreSQL is prone to an uncontrolled search path element vulnerability in; CREATE EXTENSION.
PostgreSQL is prone to an uncontrolled search path element vulnerability in

When a superuser runs certain CREATE EXTENSION statements, users may be able to
execute arbitrary SQL functions under the identity of that superuser. The attacker must have permission to
create objects in the new extension's schema or a schema of a prerequisite extension. Not all extensions are

PostgreSQL versions prior to 9.5.23, 9.6.x prior to 9.6.19, 10.x prior to
10.14, 11.x prior to 11.9 and 12.x prior to 12.4.

Update to version 9.5.23, 9.6.19, 10.14, 11.9, 12.4 or later.

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2020-14350
