CRITICAL🇵🇱 Wersja polska

CVE-2025-55283

CVSS 9.1v3.1pub. 2025-08-18upd. 2025-08-21

aiven-db-migrate is an Aiven database migration tool. Prior to 1.0.7, there is a privilege escalation vulnerability that allows elevation to superuser inside PostgreSQL databases during a migration from an untrusted source server. The vulnerability stems from psql executing commands embedded in a dump from the source server. This vulnerability is fixed in 1.0.7.

🤖 AI Analysis
How it works

During the migration process, the tool uses psql to execute commands contained in the dump downloaded from the source server. An attacker controlling the source server can embed malicious SQL commands or psql meta-commands in the dump, which will be executed in the context of the target database. This mechanism allows for privilege escalation to the PostgreSQL superuser level in the target database.

Impact

The attacker can obtain superuser privileges in the target PostgreSQL database, meaning full control over the database — reading, modifying and deleting data, as well as the ability to further compromise the target environment.

Mitigation & patch

Update aiven-db-migrate to version 1.0.7 or later, in which the vulnerability has been fixed. The commit with the fix is available at the address indicated in the vendor's references on GitHub.

Who is affected

Aiven aiven-db-migrate in versions earlier than 1.0.7, when migration is performed from an untrusted source PostgreSQL server.

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
  • Aiven Db Migrate

    APP
    Aiven
    < 1.0.7
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
LPE
CWE
References

Related vulnerabilities

CVE-2025-55282CRITICAL9.1PL ✓same product

Privilege escalation do superużytkownika PostgreSQL w aiven-db-migrate

CVE-2026-25999HIGH7.1same vendor

Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to 2.10.2, there is an impr...

CVE-2025-67745HIGH7.1same vendor

MyHoard is a daemon for creating, managing and restoring MySQL backups. Starting in version 1.0.1 and prior to...

CVE-2023-32305HIGH8.8same vendor

aiven-extras is a PostgreSQL extension. Versions prior to 1.1.9 contain a privilege escalation vulnerability, ...

CVE-2026-39961MEDIUM6.8same vendor

Aiven Operator umożliwia udostępnianie i zarządzanie usługami Aiven z klastra Kubernetes. W wersjach od 0.31.0...