Логотип exploitDog
bind:"CVE-2026-2004" OR bind:"CVE-2026-2005" OR bind:"CVE-2026-2006"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2026-2004" OR bind:"CVE-2026-2005" OR bind:"CVE-2026-2006"

Количество 54

Количество 54

nvd логотип

CVE-2026-2005

около 1 месяца назад

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provider to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-2005

около 1 месяца назад

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provid ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2026-2006

около 1 месяца назад

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2026-2006

около 1 месяца назад

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-2006

около 1 месяца назад

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-2006

около 1 месяца назад

Missing validation of multibyte character length in PostgreSQL text ma ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-hgmp-6hmc-prfc

около 1 месяца назад

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provider to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2026-01722

около 1 месяца назад

Уязвимость компонента pgcrypto системы управления базами данных PostgreSQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0787-1

23 дня назад

Security update for postgresql17

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0785-1

23 дня назад

Security update for postgresql18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0784-1

23 дня назад

Security update for postgresql16

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0769-1

23 дня назад

Security update for postgresql18

EPSS: Низкий
github логотип

GHSA-mq5v-x68w-mc4f

около 1 месяца назад

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2026-01723

около 1 месяца назад

Уязвимость системы управления базами данных PostgreSQL, связанная с неверным индексированием массива, позволяющая нарушителю выполнить произвольный код в контексте текущего пользователя

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-2005

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provider to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-2005

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provid ...

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-2006

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-2006

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-2006

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-2006

Missing validation of multibyte character length in PostgreSQL text ma ...

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
github логотип
GHSA-hgmp-6hmc-prfc

Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provider to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
fstec логотип
BDU:2026-01722

Уязвимость компонента pgcrypto системы управления базами данных PostgreSQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0787-1

Security update for postgresql17

0%
Низкий
23 дня назад
suse-cvrf логотип
SUSE-SU-2026:0785-1

Security update for postgresql18

0%
Низкий
23 дня назад
suse-cvrf логотип
SUSE-SU-2026:0784-1

Security update for postgresql16

0%
Низкий
23 дня назад
suse-cvrf логотип
SUSE-SU-2026:0769-1

Security update for postgresql18

0%
Низкий
23 дня назад
github логотип
GHSA-mq5v-x68w-mc4f

Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
fstec логотип
BDU:2026-01723

Уязвимость системы управления базами данных PostgreSQL, связанная с неверным индексированием массива, позволяющая нарушителю выполнить произвольный код в контексте текущего пользователя

CVSS3: 8.8
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу