Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-32286

Опубликовано: 26 мар. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 7.5

Описание

The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.

РелизСтатусПримечание
devel

needs-triage

esm-apps/noble

needs-triage

esm-apps/resolute

needs-triage

jammy

DNE

noble

needs-triage

questing

ignored

end of life, was needs-triage
resolute

needs-triage

upstream

released

2.3.3-2

Показывать по

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
6 месяцев назад

The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.

CVSS3: 7.5
nvd
6 месяцев назад

The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.

CVSS3: 7.5
debian
6 месяцев назад

The DataRow.Decode function fails to properly validate field lengths. ...

CVSS3: 7.5
github
6 месяцев назад

Denial of service in github.com/jackc/pgproto3/v2

rocky
4 месяца назад

Important: osbuild-composer security update

7.5 High

CVSS3