Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-12818

Опубликовано: 13 нояб. 2025
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

Integer wraparound in multiple PostgreSQL libpq client library functions allows an application input provider or network peer to cause libpq to undersize an allocation and write out-of-bounds by hundreds of megabytes. This results in a segmentation fault for the application using libpq. Versions before PostgreSQL 18.1, 17.7, 16.11, 15.15, 14.20, and 13.23 are affected.

EPSS

Процентиль: 27%
0.0034
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.9
ubuntu
10 месяцев назад

Integer wraparound in multiple PostgreSQL libpq client library functions allows an application input provider or network peer to cause libpq to undersize an allocation and write out-of-bounds by hundreds of megabytes. This results in a segmentation fault for the application using libpq. Versions before PostgreSQL 18.1, 17.7, 16.11, 15.15, 14.20, and 13.23 are affected.

CVSS3: 7.5
redhat
10 месяцев назад

Integer wraparound in multiple PostgreSQL libpq client library functions allows an application input provider or network peer to cause libpq to undersize an allocation and write out-of-bounds by hundreds of megabytes. This results in a segmentation fault for the application using libpq. Versions before PostgreSQL 18.1, 17.7, 16.11, 15.15, 14.20, and 13.23 are affected.

CVSS3: 5.9
msrc
10 месяцев назад

PostgreSQL libpq undersizes allocations, via integer wraparound

CVSS3: 5.9
debian
10 месяцев назад

Integer wraparound in multiple PostgreSQL libpq client library functio ...

rocky
8 месяцев назад

Moderate: libpq security update

EPSS

Процентиль: 27%
0.0034
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190