Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 33

Количество 33

ubuntu логотип

CVE-2026-6477

3 месяца назад

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2026-6477

3 месяца назад

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.4
EPSS: Низкий
nvd логотип

CVE-2026-6477

3 месяца назад

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2026-6477

2 месяца назад

PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-6477

3 месяца назад

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) i ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-jm5f-gpfq-q9h3

3 месяца назад

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2026-07098

3 месяца назад

Уязвимость функции lo_export(), lo_read(), lo_lseek64() и lo_tell64() клиентской библиотеке libpq системы управления базами данных PostgreSQL, позволяющая нарушителю перезаписать память стека pg_dump или psql

CVSS3: 8.8
EPSS: Низкий
rocky логотип

RLSA-2026:28037

около 1 месяца назад

Important: postgresql:15 security update

EPSS: Низкий
rocky логотип

RLSA-2026:27743

около 1 месяца назад

Important: postgresql16 security update

EPSS: Низкий
rocky логотип

RLSA-2026:27742

около 1 месяца назад

Important: postgresql18 security update

EPSS: Низкий
rocky логотип

RLSA-2026:27738

около 1 месяца назад

Important: libpq security update

EPSS: Низкий
rocky логотип

RLSA-2026:26204

около 1 месяца назад

Important: postgresql:18 security update

EPSS: Низкий
rocky логотип

RLSA-2026:26203

около 1 месяца назад

Important: postgresql:16 security update

EPSS: Низкий
rocky логотип

RLSA-2026:26181

около 1 месяца назад

Important: postgresql:15 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-28037

около 1 месяца назад

ELSA-2026-28037: postgresql:15 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-27738

около 1 месяца назад

ELSA-2026-27738: libpq security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-26203

около 1 месяца назад

ELSA-2026-26203: postgresql:16 security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2117-1

2 месяца назад

Security update for postgresql14

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2086-1

2 месяца назад

Security update for postgresql14

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2085-1

2 месяца назад

Security update for postgresql15

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-6477

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-6477

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.4
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6477

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-6477

PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory

CVSS3: 8.8
0%
Низкий
2 месяца назад
debian логотип
CVE-2026-6477

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) i ...

CVSS3: 8.8
0%
Низкий
3 месяца назад
github логотип
GHSA-jm5f-gpfq-q9h3

Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq lo_export(), lo_read(), lo_lseek64(), and lo_tell64() functions allows the server superuser to overwrite a client stack buffer with an arbitrarily-large response. Like gets(), PQfn(..., result_is_int=0, ...) stores arbitrary-length, server-determined data into a buffer of unspecified size. Because both the \lo_export command in psql and pg_dump call lo_read(), the server superuser can overwrite pg_dump or psql stack memory. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

CVSS3: 8.8
0%
Низкий
3 месяца назад
fstec логотип
BDU:2026-07098

Уязвимость функции lo_export(), lo_read(), lo_lseek64() и lo_tell64() клиентской библиотеке libpq системы управления базами данных PostgreSQL, позволяющая нарушителю перезаписать память стека pg_dump или psql

CVSS3: 8.8
0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:28037

Important: postgresql:15 security update

около 1 месяца назад
rocky логотип
RLSA-2026:27743

Important: postgresql16 security update

около 1 месяца назад
rocky логотип
RLSA-2026:27742

Important: postgresql18 security update

около 1 месяца назад
rocky логотип
RLSA-2026:27738

Important: libpq security update

около 1 месяца назад
rocky логотип
RLSA-2026:26204

Important: postgresql:18 security update

около 1 месяца назад
rocky логотип
RLSA-2026:26203

Important: postgresql:16 security update

около 1 месяца назад
rocky логотип
RLSA-2026:26181

Important: postgresql:15 security update

около 1 месяца назад
oracle-oval логотип
ELSA-2026-28037

ELSA-2026-28037: postgresql:15 security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-27738

ELSA-2026-27738: libpq security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-26203

ELSA-2026-26203: postgresql:16 security update (IMPORTANT)

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2117-1

Security update for postgresql14

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2086-1

Security update for postgresql14

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2085-1

Security update for postgresql15

2 месяца назад

Уязвимостей на страницу