Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-18024

Опубликовано: 13 авг. 2026
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes after the end of a specific allocation, via a crafted text value. This is the same class of defect that CVE-2026-2006 fixed, though this instance has less impact. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

A flaw was found in PostgreSQL. A buffer over-read vulnerability in the ascii() SQL function allows a user to disclose up to 3 bytes of memory after the end of a specific allocation by providing a specially crafted text value. This could lead to limited information disclosure.

Отчет

This Moderate impact information disclosure flaw in PostgreSQL's ascii() SQL function allows an authenticated attacker to read up to 3 bytes of memory beyond an allocated buffer by providing a specially crafted text value. The limited scope of data disclosure contributes to its Moderate severity.

Меры по смягчению последствий

To mitigate this allow only trusted roles to run arbitrary SQL, and do not let untrusted users call ascii() on values they supply. Use a UTF-8 database encoding so the server rejects invalid multibyte input at the protocol boundary where possible, and restrict database network access to trusted clients.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10postgresql16Fix deferred
Red Hat Enterprise Linux 10postgresql18Fix deferred
Red Hat Enterprise Linux 6postgresqlFix deferred
Red Hat Enterprise Linux 7postgresqlFix deferred
Red Hat Enterprise Linux 8postgresql:12/postgresqlFix deferred
Red Hat Enterprise Linux 8postgresql:15/postgresqlFix deferred
Red Hat Enterprise Linux 8postgresql:16/postgresqlFix deferred
Red Hat Enterprise Linux 9postgresqlFix deferred
Red Hat Enterprise Linux 9postgresql:15/postgresqlFix deferred
Red Hat Enterprise Linux 9postgresql:16/postgresqlFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-126
https://bugzilla.redhat.com/show_bug.cgi?id=2515323postgresql: PostgreSQL: Information disclosure via buffer over-read in ascii() function

EPSS

Процентиль: 9%
0.00195
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 1 месяца назад

Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes after the end of a specific allocation, via a crafted text value. This is the same class of defect that CVE-2026-2006 fixed, though this instance has less impact. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 4.3
nvd
около 1 месяца назад

Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes after the end of a specific allocation, via a crafted text value. This is the same class of defect that CVE-2026-2006 fixed, though this instance has less impact. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 4.3
msrc
около 1 месяца назад

PostgreSQL ascii() function reads past end of buffer

CVSS3: 4.3
debian
около 1 месяца назад

Buffer over-read in PostgreSQL ascii() SQL function allows a user to d ...

CVSS3: 4.3
github
около 1 месяца назад

Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes after the end of a specific allocation, via a crafted text value. This is the same class of defect that CVE-2026-2006 fixed, though this instance has less impact. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

EPSS

Процентиль: 9%
0.00195
Низкий

4.3 Medium

CVSS3