Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | PostgreSQL SQL×¢ÈëÎó²î |
CVE ID | CVE-2025-1094 |
Îó²îÀàÐÍ | SQL×¢Èë | ·¢Ã÷ʱ¼ä | 2025-02-21 |
Îó²îÆÀ·Ö | 8.1 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | ¸ß | Óû§½»»¥ | ÎÞ |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
PostgreSQLÊÇÒ»¸ö¿ªÔ´¡¢Ç¿Ê¢µÄ¹ØÏµÐÍÊý¾Ý¿âÖÎÀíϵͳ£¬£¬£¬Ö§³ÖSQL±ê×¼¼°À©Õ¹£¬£¬£¬ÆÕ±éÓ¦ÓÃÓÚÆóÒµ¼¶Ó¦Óᣡ£¡£¡£Ëü¾ß±¸¸ß¿É¿¿ÐÔ¡¢¿ÉÀ©Õ¹ÐÔ¡¢Êý¾ÝÍêÕûÐԺͲ¢·¢¿ØÖƹ¦Ð§£¬£¬£¬Ö§³Ö¶àÖÖ±à³ÌÓïÑÔºÍÀ©Õ¹»úÖÆ¡£¡£¡£¡£PostgreSQLµÄÌØµã°üÀ¨ACIDÊÂÎñÖ§³Ö¡¢ÖØ´óÅÌÎÊÓÅ»¯¡¢JSONÊý¾ÝÀàÐÍ´¦Öóͷ£¡¢È«ÎÄËÑË÷µÈ¡£¡£¡£¡£ËüÊÊÓÃÓÚ´ÓСÐÍÓ¦Óõ½´óÐÍÊý¾Ý¿ÍÕ»µÄÖÖÖÖ³¡¾°¡£¡£¡£¡£
2025Äê2ÔÂ21ÈÕ£¬£¬£¬¼øºÚµ£±£Íø¼¯ÍÅVSRC¼à²âµ½PostgreSQLÐû²¼Á˹ØÓÚCVE-2025-1094Îó²îµÄÇ徲ͨ¸æ¡£¡£¡£¡£Í¨¸æÖ¸³ö£¬£¬£¬PostgreSQLµÄlibpqº¯Êý£¨ÈçPQescapeLiteral()¡¢PQescapeIdentifier()¡¢PQescapeString()ºÍPQescapeStringConn()£©ÔÚijЩʹÓÃģʽÏÂδÄÜ׼ȷ´¦Öóͷ£ÒýºÅÓï·¨£¬£¬£¬¿ÉÄܵ¼ÖÂSQL×¢ÈëÎó²î¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔͨ¹ý½á¹¹¶ñÒâÊäÈ룬£¬£¬Ê¹ÓÃÕâЩº¯ÊýµÄ·µ»ØÐ§¹ûÔÚPostgreSQL½»»¥ÖÕ¶ËpsqlÖÐÖ´ÐжñÒâSQLÓï¾ä¡£¡£¡£¡£±ðµÄ£¬£¬£¬PostgreSQLÏÂÁîÐй¤¾ßÔÚÌØ¶¨×Ö·û±àÂëÇéÐÎÏ£¨Èçclient_encodingΪBIG5¡¢server_encodingΪEUC_TW»òMULE_INTERNALʱ£©Ò²¿ÉÄÜÊܵ½ÀàËÆSQL×¢Èë¹¥»÷µÄÍþв¡£¡£¡£¡£¸ÃÎó²îµÄCVSSÆÀ·ÖΪ8.1·Ö£¬£¬£¬Îó²îÆ·¼¶Îª¸ßΣ¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
¹Ù·½ÒÑÓÚ2025Äê2ÔÂ13ÈÕÐû²¼ÁËÐÞ¸´²¹¶¡£¡£¡£¡£¬£¬£¬½¨ÒéÊÜÓ°Ïì°æ±¾µÄÓû§¾¡¿ì¾ÙÐÐÉý¼¶¡£¡£¡£¡£ÏêϸÐÞ¸´°æ±¾ÈçÏ£º
PostgreSQL 17ÒÑÔÚ17.3°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 16ÒÑÔÚ16.7°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 15ÒÑÔÚ15.11°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 14ÒÑÔÚ14.16°æ±¾ÖÐÐÞ¸´¸ÃÎó²îPostgreSQL 13ÒÑÔÚ13.19°æ±¾ÖÐÐÞ¸´¸ÃÎó²î
ÏÂÔØÁ´½Ó£º
https://github.com/postgres/postgres/tags/
3.2 ÔÝʱ²½·¥
? ʹÓòÎÊý»¯ÅÌÎÊ»òÔ¤±àÒëÓï¾ä£¬£¬£¬×èÖ¹Ö±½ÓÆ´½ÓÓû§ÊäÈë¡£¡£¡£¡£? ÑÏ¿áÑéÖ¤²¢¹ýÂËÓû§ÊäÈ룬£¬£¬×èÖ¹¶ñÒâ×Ö·û¡£¡£¡£¡£? ÏÞÖÆÊý¾Ý¿âÓû§È¨ÏÞ£¬£¬£¬È·±£×îµÍÐëҪȨÏÞ¡£¡£¡£¡£
3.4 ²Î¿¼Á´½Ó
https://www.postgresql.org/support/security/CVE-2025-1094/https://www.postgresql.org/support/security/CVE-2025-1094https://nvd.nist.gov/vuln/detail/CVE-2025-1094