RHSA-2026:19009HighCVSS 8.8

Red Hat Security Advisory: postgresql18 security update

Published
May 19, 2026
Last Modified
July 2, 2026

🔗 CVE IDs covered (5)

📋 Description

CVE-2026-2003 — postgresql: PostgreSQL oidvector discloses a few bytes of memory CVE-2026-2004 — postgresql: PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary code CVE-2026-2005 — postgresql: PostgreSQL pgcrypto heap buffer overflow executes arbitrary code CVE-2026-2006 — postgresql: PostgreSQL missing validation of multibyte character length executes arbitrary code CVE-2026-2007 — postgresql: PostgreSQL pg_trgm heap buffer overflow writes pattern onto server memory

🔗 References (8)