aiven-db-migrate is an Aiven database migration tool. Prior to 1.0.7, there is a privilege escalation vulnerability that allows elevation to superuser inside PostgreSQL databases during a migration from an untrusted source server. The vulnerability stems from psql executing commands embedded in a dump from the source server. This vulnerability is fixed in 1.0.7.
During the migration process, the tool uses psql to execute commands contained in the dump downloaded from the source server. An attacker controlling the source server can embed malicious SQL commands or psql meta-commands in the dump, which will be executed in the context of the target database. This mechanism allows for privilege escalation to the PostgreSQL superuser level in the target database.
The attacker can obtain superuser privileges in the target PostgreSQL database, meaning full control over the database — reading, modifying and deleting data, as well as the ability to further compromise the target environment.
Update aiven-db-migrate to version 1.0.7 or later, in which the vulnerability has been fixed. The commit with the fix is available at the address indicated in the vendor's references on GitHub.
Aiven aiven-db-migrate in versions earlier than 1.0.7, when migration is performed from an untrusted source PostgreSQL server.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HAiven Db Migrate
APPAiven< 1.0.7
Related vulnerabilities
Privilege escalation do superużytkownika PostgreSQL w aiven-db-migrate
Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to 2.10.2, there is an impr...
MyHoard is a daemon for creating, managing and restoring MySQL backups. Starting in version 1.0.1 and prior to...
aiven-extras is a PostgreSQL extension. Versions prior to 1.1.9 contain a privilege escalation vulnerability, ...
Aiven Operator umożliwia udostępnianie i zarządzanie usługami Aiven z klastra Kubernetes. W wersjach od 0.31.0...