Information on source package postgresql-18

Available versions

ReleaseVersion
forky18.3-1
sid18.4-1

Open issues

BugforkysidDescription
CVE-2026-6638vulnerablefixedSQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... ...
CVE-2026-6637vulnerablefixedStack buffer overflow in PostgreSQL module "refint" allows an unprivil ...
CVE-2026-6575vulnerablefixedBuffer over-read in PostgreSQL function pg_restore_attribute_stats() a ...
CVE-2026-6479vulnerablefixedUncontrolled recursion in PostgreSQL SSL and GSS negotiation allows an ...
CVE-2026-6478vulnerablefixedCovert timing channel in comparison of MD5-hashed password in PostgreS ...
CVE-2026-6477vulnerablefixedUse of inherently dangerous function PQfn(..., result_is_int=0, ...) i ...
CVE-2026-6476vulnerablefixedSQL injection in PostgreSQL pg_createsubscriber allows an attacker wit ...
CVE-2026-6475vulnerablefixedSymlink following in PostgreSQL pg_basebackup plain format and in pg_r ...
CVE-2026-6474vulnerablefixedExternally-controlled format string in PostgreSQL timeofday() function ...
CVE-2026-6473vulnerablefixedInteger wraparound in multiple PostgreSQL server features allows an un ...
CVE-2026-6472vulnerablefixedMissing authorization in PostgreSQL CREATE TYPE allows an object creat ...

Resolved issues

BugDescription
CVE-2026-2007Heap buffer overflow in PostgreSQL pg_trgm allows a database user to a ...
CVE-2026-2006Missing validation of multibyte character length in PostgreSQL text ma ...
CVE-2026-2005Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provid ...
CVE-2026-2004Missing validation of type of input in PostgreSQL intarray extension s ...
CVE-2026-2003Improper validation of type "oidvector" in PostgreSQL allows a databas ...
CVE-2025-12818Integer wraparound in multiple PostgreSQL libpq client library functio ...
CVE-2025-12817Missing authorization in PostgreSQL CREATE STATISTICS command allows a ...

Search for package or bug name: Reporting problems