Release date:
2026-10-02 10:45:50 UTC
Description:
* SECURITY UPDATE: SQL injection in psql where in-line COPY ... FROM STDIN
data was executed as SQL commands when the COPY command failed or was
skipped inside an \if branch
- debian/patches/CVE-2026-6464.patch: teach the lexer to recognize and
count COPY ... FROM STDIN commands via copy_stdin_count and
psqlscan_is_copy_from_stdin(), save and restore the full lexer state
when skipping \if branches, and make SendQuery() read and discard the
pending COPY data through handleCopyIn() with a NULL connection, in
src/bin/psql/command.c, common.c, copy.c, mainloop.c, startup.c,
psqlscanslash.l, src/fe_utils/conditional.c and psqlscan.l
- CVE-2026-6464
* SECURITY UPDATE: out of bounds reads in the ascii() function on invalid
multibyte input, able to disclose bytes of server memory or trigger
assertion failures
- debian/patches/CVE-2026-18024.patch: validate the multibyte sequence
length against the input length and replace the byte range assertions
with ERRCODE_CHARACTER_NOT_IN_REPERTOIRE errors, in ascii() in
src/backend/utils/adt/oracle_compat.c
- CVE-2026-18024
* SECURITY UPDATE: stale cached plans kept enforcing outdated row level
security policies after role membership or role attribute changes
- debian/patches/CVE-2026-14666.patch: register syscache invalidation
callbacks on pg_auth_members and pg_authid that invalidate the role
dependent cached plans, in PlanCacheRoleCallback() and InitPlanCache()
in src/backend/utils/cache/plancache.c
- CVE-2026-14666
* SECURITY UPDATE: pgcrypto PGP encryption silently produced effectively
unencrypted output when OpenSSL rejected the cipher, for example in FIPS
mode, because the px_cipher_encrypt() result was never checked and the
plaintext was XORed with a non encrypted block
- debian/patches/CVE-2026-14663.patch: raise an error when the cipher
fails during PGP processing and add the decrypt only
ignore-cipher-failure option to recover data from badly encrypted
messages, in contrib/pgcrypto/pgp-cfb.c, pgp-decrypt.c, pgp-encrypt.c,
pgp-pgsql.c, pgp-pubkey.c, pgp.c and pgp.h
- CVE-2026-14663
* SECURITY UPDATE: out of bounds writes in ecpg client programs processing
bytea data from a rogue server that lacks the expected hex prefix
- debian/patches/CVE-2026-16241.patch: reject bytea values shorter than
two bytes or missing the \x prefix with a new ECPG_BYTEA_FORMAT error
before computing decode sizes, in ecpg_get_data() in
src/interfaces/ecpg/ecpglib/data.c, error.c and
src/interfaces/ecpg/include/ecpgerrno.h
- CVE-2026-16241
Updated packages:
-
libecpg-compat3-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:d26814f84a49952255e41e6f633476a413a68f43
-
libecpg-dev-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:cded7e1b2ffa2fe50887aa60a778180a23287fae
-
libecpg6-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:fa9e439e8111c4325908ee8b09809b4983832779
-
libpgtypes3-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:fc28865126b1cf93de5c8e465081e0e1264fa777
-
libpq-dev-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:9af14707882eb48669bd8177a1e2fc54d8a24908
-
libpq5-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:0a1506b1e0ee54aee30fb9215c4868faf71fd511
-
postgresql12_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:389fb727e5345bbf59ab6b434cab6b9e44b6a564
-
postgresql12-client_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:50b1b6b1c9666fa1c9f8b8b4ae2a09dbf07ef8d3
-
postgresql12-doc_12.22-2~bookworm+tuxcare.els15_all.deb
sha:dde451de765c455f900d0883ac3afdb7a24403df
-
postgresql12-plperl_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:ff224d25a0e5621d70cb3832df7e06abfb20d885
-
postgresql12-plpython3_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:c1b4f09eca10b3005b8349af7b77da32253a0f49
-
postgresql12-pltcl_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:5fda1d414b69b5d61ca0584bb1f1e94afd56d27f
-
postgresql12-server-dev_12.22-2~bookworm+tuxcare.els15_amd64.deb
sha:f9822c8fb72691dde74ac5629ba3216848ffbc2a
-
libecpg-compat3-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:e5eb0ff9455e1c77895b31e83aa03f12f8f7ad7e
-
libecpg-dev-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:52b8205370a7eb350f19a50bc23aab8a05ff79e2
-
libecpg6-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:e60f44835a7e5175b0c2958e162d1e0acb3a5f4d
-
libpgtypes3-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:bf224862c97aeef7351d9976073c36646240aec7
-
libpq-dev-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:8ea6c3d4bb8c67d2955ed2a3b714a618728028e9
-
libpq5-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:186b2da42274fa5b289d696d2f30a5bdbbcd0fe6
-
postgresql12_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:0661e76701ff47cdceae448b1ede890bc8eb0954
-
postgresql12-client_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:0ef00c8f41bb6de9fb9a6df0e3727724a6112f65
-
postgresql12-plperl_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:e4f6b037d4cbafc22c5efae82e46ef176708a18e
-
postgresql12-plpython3_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:89a9392824f7163e8c0c8ae2c2f7a63b756f4f9e
-
postgresql12-pltcl_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:39c14475ef8ce915bd350f511e40da9dbdab9cda
-
postgresql12-server-dev_12.22-2~bookworm+tuxcare.els15_arm64.deb
sha:7ecdcd212b8ae1fe9d3bdec54eff9bd7e4b6a90e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.