The vendor explicitly states that these products are not affected by this CVE.
- All currently supported Red Hat products
- Summary
- A flaw was found in TimescaleDB. An authenticated attacker with data manipulation language (DML) access to a compressed hypertable could exploit an out-of-bounds read vulnerability in the Gorilla compression reverse row iterator. By storing a specially crafted compressed data entry with an internally inconsistent BitArray, the attacker can trigger an unsigned integer wraparound. This leads to a read beyond the allocated memory, causing a system crash and resulting in a Denial of Service (DoS).
- Remediation
- No remediation text is recorded.
