Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-33816

Опубликовано: 07 апр. 2026
Источник: redhat
CVSS3: 8.3

Описание

Memory-safety vulnerability in github.com/jackc/pgx/v5.

A flaw was found in github.com/jackc/pgx, a PostgreSQL driver for Go. This memory-safety vulnerability could allow an attacker to cause various impacts, such as denial of service (DoS) or potentially arbitrary code execution, by exploiting memory corruption issues. The exact method of exploitation and specific consequences would depend on the nature of the memory corruption.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Custom Metric Autoscaler operator for Red Hat Openshiftredhat-user-workloads/custom-metrics-autoscaler-operatorNot affected
Custom Metric Autoscaler operator for Red Hat Openshiftredhat-user-workloads/keda-adapterNot affected
Custom Metric Autoscaler operator for Red Hat Openshiftredhat-user-workloads/keda-webhooksNot affected
Multicluster Engine for Kubernetesmulticluster-engine/assisted-service-9-rhel9Affected
Multicluster Engine for Kubernetesredhat-user-workloads/azure-service-operator-mce-211Affected
Multicluster Global Hubmulticluster-globalhub/multicluster-globalhub-agent-rhel8Affected
Multicluster Global Hubmulticluster-globalhub/multicluster-globalhub-kessel-inventory-api-rhel9Affected
Multicluster Global Hubmulticluster-globalhub/multicluster-globalhub-manager-rhel8Affected
Multicluster Global Hubmulticluster-globalhub/multicluster-globalhub-operator-bundleNot affected
Multicluster Global Hubmulticluster-globalhub/multicluster-globalhub-rhel8-operatorAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2455972github.com/jackc/pgx/v5: github.com/jackc/pgx: Memory-safety vulnerability

8.3 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
6 месяцев назад

Memory-safety vulnerability in github.com/jackc/pgx/v5.

CVSS3: 9.8
nvd
6 месяцев назад

Memory-safety vulnerability in github.com/jackc/pgx/v5.

CVSS3: 9.8
debian
6 месяцев назад

Memory-safety vulnerability in github.com/jackc/pgx/v5.

CVSS3: 9.8
github
6 месяцев назад

Memory-safety vulnerability in github.com/jackc/pgx/v5.

rocky
4 месяца назад

Important: go-fdo-server security update

8.3 High

CVSS3