2026年8月10日星期一

PostgreSQL Multiple Vulnerabilities

PostgreSQL Multiple Vulnerabilities

Release Date: 10 Aug 2026

Multiple vulnerabilities were identified in PostgreSQL. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, remote code execution, denial of service condition, data manipulation and sensitive information disclosure on the targeted system.


Impact

  • Remote Code Execution
  • Information Disclosure
  • Elevation of Privilege
  • Denial of Service
  • Data Manipulation

System / Technologies affected

  • PostgreSQL versions prior to 18.4
  • PostgreSQL versions prior to 17.10
  • PostgreSQL versions prior to 16.14
  • PostgreSQL versions prior to 15.18
  • PostgreSQL versions prior to 14.23

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

 

  • The vendor has issued fixes:
  • Update to PostgreSQL version 18.4
  • Update to PostgreSQL version 17.10
  • Update to PostgreSQL version 16.14
  • Update to PostgreSQL version 15.18
  • Update to PostgreSQL version 14.23

Vulnerability Identifier


Source


Related Link

https://www.postgresql.org/about/news/postgresql-184-1710-1614-1518-and-1423-released-3297/

沒有留言:

發佈留言

F5 產品阻斷服務漏洞

F5 產品阻斷服務漏洞 發佈日期: 2026年08月11日 於 F5 產品發現一個漏洞。遠端攻擊者可利用這漏洞,於目標系統觸發阻斷服務狀況。   注意: 受影響之系統或技術暫無可修補 CVE-2026-42534 的修補程式。因此,風險等級評為高度風險。   影響 阻斷服務 受影...