CVE-2006-5540

backend/parser/analyze.c in PostgreSQL 8.1.x before 8.1.5 allows remote authenticated users to cause a denial of service (daemon crash) via certain aggregate functions in an UPDATE statement, which are not properly handled during a "MIN/MAX index optimization."

Published: 2006-10-26 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2006-5540 is rated Moderate Risk (42.5/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 1.86%). Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2006-5540

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 2.10% 1.86% -0.24%
2 2025-11-19 1.56% 2.10% +0.55%
3 2025-03-30 1.56%

Full EPSS history (13 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2006-5540

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
4.0 2.0 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:S)
A single authentication is required.
Confidentiality impact (C:N)
No confidentiality impact.
Integrity impact (I:N)
No integrity impact.
Availability impact (A:P)
Partial availability impact.
8.0 2.9 [email protected]

Weakness enumeration for CVE-2006-5540

OS Trackers for CVE-2006-5540

vendor priority summary link
alpine CVE-2006-5540: no source package rows; 0 state rows across 0 repos (none); fixed 0, open 0. https://security.alpinelinux.org/vuln/CVE-2006-5540
redhat low https://access.redhat.com/security/cve/CVE-2006-5540
ubuntu medium CVE-2006-5540 medium priority: Ubuntu including 3 source packages (postgresql-7.4, postgresql-8.0, postgresql-8.1), 12 status rows across 4 suites (dapper, edgy, feisty, upstream): DNE 3, needs-triage 3, not-affected 3, released 3. https://ubuntu.com/security/CVE-2006-5540

Affected software / configurations for CVE-2006-5540

Vendor Product Version Raw CPE
postgresql postgresql 6.3.2 cpe:2.3:a:postgresql:postgresql:6.3.2:*:*:*:*:*:*:*
postgresql postgresql 6.5.3 cpe:2.3:a:postgresql:postgresql:6.5.3:*:*:*:*:*:*:*
postgresql postgresql 7.0.2 cpe:2.3:a:postgresql:postgresql:7.0.2:*:*:*:*:*:*:*
postgresql postgresql 7.0.3 cpe:2.3:a:postgresql:postgresql:7.0.3:*:*:*:*:*:*:*
postgresql postgresql 7.1 cpe:2.3:a:postgresql:postgresql:7.1:*:*:*:*:*:*:*
postgresql postgresql 7.1.1 cpe:2.3:a:postgresql:postgresql:7.1.1:*:*:*:*:*:*:*
postgresql postgresql 7.1.2 cpe:2.3:a:postgresql:postgresql:7.1.2:*:*:*:*:*:*:*
postgresql postgresql 7.1.3 cpe:2.3:a:postgresql:postgresql:7.1.3:*:*:*:*:*:*:*
postgresql postgresql 7.2 cpe:2.3:a:postgresql:postgresql:7.2:*:*:*:*:*:*:*
postgresql postgresql 7.2.1 cpe:2.3:a:postgresql:postgresql:7.2.1:*:*:*:*:*:*:*
postgresql postgresql 7.2.2 cpe:2.3:a:postgresql:postgresql:7.2.2:*:*:*:*:*:*:*
postgresql postgresql 7.2.3 cpe:2.3:a:postgresql:postgresql:7.2.3:*:*:*:*:*:*:*
postgresql postgresql 7.2.4 cpe:2.3:a:postgresql:postgresql:7.2.4:*:*:*:*:*:*:*
postgresql postgresql 7.2.7 cpe:2.3:a:postgresql:postgresql:7.2.7:*:*:*:*:*:*:*
postgresql postgresql 7.3 cpe:2.3:a:postgresql:postgresql:7.3:*:*:*:*:*:*:*
postgresql postgresql 7.3.1 cpe:2.3:a:postgresql:postgresql:7.3.1:*:*:*:*:*:*:*
postgresql postgresql 7.3.2 cpe:2.3:a:postgresql:postgresql:7.3.2:*:*:*:*:*:*:*
postgresql postgresql 7.3.3 cpe:2.3:a:postgresql:postgresql:7.3.3:*:*:*:*:*:*:*
postgresql postgresql 7.3.4 cpe:2.3:a:postgresql:postgresql:7.3.4:*:*:*:*:*:*:*
postgresql postgresql 7.3.6 cpe:2.3:a:postgresql:postgresql:7.3.6:*:*:*:*:*:*:*
postgresql postgresql 7.3.8 cpe:2.3:a:postgresql:postgresql:7.3.8:*:*:*:*:*:*:*
postgresql postgresql 7.3.9 cpe:2.3:a:postgresql:postgresql:7.3.9:*:*:*:*:*:*:*
postgresql postgresql 7.3.10 cpe:2.3:a:postgresql:postgresql:7.3.10:*:*:*:*:*:*:*
postgresql postgresql 7.3.11 cpe:2.3:a:postgresql:postgresql:7.3.11:*:*:*:*:*:*:*
postgresql postgresql 7.3.12 cpe:2.3:a:postgresql:postgresql:7.3.12:*:*:*:*:*:*:*
postgresql postgresql 7.3.13 cpe:2.3:a:postgresql:postgresql:7.3.13:*:*:*:*:*:*:*
postgresql postgresql 7.3.14 cpe:2.3:a:postgresql:postgresql:7.3.14:*:*:*:*:*:*:*
postgresql postgresql 7.3.15 cpe:2.3:a:postgresql:postgresql:7.3.15:*:*:*:*:*:*:*
postgresql postgresql 7.4 cpe:2.3:a:postgresql:postgresql:7.4:*:*:*:*:*:*:*
postgresql postgresql 7.4.1 cpe:2.3:a:postgresql:postgresql:7.4.1:*:*:*:*:*:*:*
postgresql postgresql 7.4.2 cpe:2.3:a:postgresql:postgresql:7.4.2:*:*:*:*:*:*:*
postgresql postgresql 7.4.3 cpe:2.3:a:postgresql:postgresql:7.4.3:*:*:*:*:*:*:*
postgresql postgresql 7.4.4 cpe:2.3:a:postgresql:postgresql:7.4.4:*:*:*:*:*:*:*
postgresql postgresql 7.4.5 cpe:2.3:a:postgresql:postgresql:7.4.5:*:*:*:*:*:*:*
postgresql postgresql 7.4.6 cpe:2.3:a:postgresql:postgresql:7.4.6:*:*:*:*:*:*:*
postgresql postgresql 7.4.7 cpe:2.3:a:postgresql:postgresql:7.4.7:*:*:*:*:*:*:*
postgresql postgresql 7.4.8 cpe:2.3:a:postgresql:postgresql:7.4.8:*:*:*:*:*:*:*
postgresql postgresql 7.4.9 cpe:2.3:a:postgresql:postgresql:7.4.9:*:*:*:*:*:*:*
postgresql postgresql 7.4.10 cpe:2.3:a:postgresql:postgresql:7.4.10:*:*:*:*:*:*:*
postgresql postgresql 7.4.11 cpe:2.3:a:postgresql:postgresql:7.4.11:*:*:*:*:*:*:*
postgresql postgresql 7.4.12 cpe:2.3:a:postgresql:postgresql:7.4.12:*:*:*:*:*:*:*
postgresql postgresql 7.4.13 cpe:2.3:a:postgresql:postgresql:7.4.13:*:*:*:*:*:*:*
postgresql postgresql 8.0 cpe:2.3:a:postgresql:postgresql:8.0:*:*:*:*:*:*:*
postgresql postgresql 8.0.1 cpe:2.3:a:postgresql:postgresql:8.0.1:*:*:*:*:*:*:*
postgresql postgresql 8.0.2 cpe:2.3:a:postgresql:postgresql:8.0.2:*:*:*:*:*:*:*
postgresql postgresql 8.0.3 cpe:2.3:a:postgresql:postgresql:8.0.3:*:*:*:*:*:*:*
postgresql postgresql 8.0.4 cpe:2.3:a:postgresql:postgresql:8.0.4:*:*:*:*:*:*:*
postgresql postgresql 8.0.5 cpe:2.3:a:postgresql:postgresql:8.0.5:*:*:*:*:*:*:*
postgresql postgresql 8.0.6 cpe:2.3:a:postgresql:postgresql:8.0.6:*:*:*:*:*:*:*
postgresql postgresql 8.0.7 cpe:2.3:a:postgresql:postgresql:8.0.7:*:*:*:*:*:*:*
postgresql postgresql 8.0.8 cpe:2.3:a:postgresql:postgresql:8.0.8:*:*:*:*:*:*:*
postgresql postgresql 8.1 cpe:2.3:a:postgresql:postgresql:8.1:*:*:*:*:*:*:*
postgresql postgresql 8.1.1 cpe:2.3:a:postgresql:postgresql:8.1.1:*:*:*:*:*:*:*
postgresql postgresql 8.1.2 cpe:2.3:a:postgresql:postgresql:8.1.2:*:*:*:*:*:*:*
postgresql postgresql 8.1.3 cpe:2.3:a:postgresql:postgresql:8.1.3:*:*:*:*:*:*:*
postgresql postgresql 8.1.4 cpe:2.3:a:postgresql:postgresql:8.1.4:*:*:*:*:*:*:*

References for CVE-2006-5540

URL Tags
ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.asc
http://projects.commandprompt.com/public/pgsql/changeset/25504
http://secunia.com/advisories/22562 Patch Vendor Advisory
http://secunia.com/advisories/22584 Patch Vendor Advisory
http://secunia.com/advisories/22606
http://secunia.com/advisories/22636
http://secunia.com/advisories/23048
http://secunia.com/advisories/23132
http://secunia.com/advisories/24094
http://secunia.com/advisories/24284
http://secunia.com/advisories/24577
http://securitytracker.com/id?1017115
http://support.avaya.com/elmodocs2/security/ASA-2007-117.htm
http://support.novell.com/techcenter/psdb/59650c03a8bc5ae310cd7898bd106ad2.html
http://www.mandriva.com/security/advisories?name=MDKSA-2006:194
http://www.novell.com/linux/security/advisories/2006_27_sr.html
http://www.postgresql.org/about/news.664
http://www.redhat.com/support/errata/RHSA-2007-0064.html
http://www.redhat.com/support/errata/RHSA-2007-0067.html
http://www.redhat.com/support/errata/RHSA-2007-0068.html
http://www.securityfocus.com/bid/20717 Patch
http://www.trustix.org/errata/2006/0059/
http://www.ubuntu.com/usn/usn-369-1
http://www.ubuntu.com/usn/usn-369-2
http://www.vupen.com/english/advisories/2006/4182
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11425
cvelogic Threat Intelligence