[CLSA-2026:1790937910] Fix of 5 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-10-02 10:45:50 UTC
Description:
* SECURITY UPDATE: SQL injection in psql where in-line COPY ... FROM STDIN data was executed as SQL commands when the COPY command failed or was skipped inside an \if branch - debian/patches/CVE-2026-6464.patch: teach the lexer to recognize and count COPY ... FROM STDIN commands via copy_stdin_count and psqlscan_is_copy_from_stdin(), save and restore the full lexer state when skipping \if branches, and make SendQuery() read and discard the pending COPY data through handleCopyIn() with a NULL connection, in src/bin/psql/command.c, common.c, copy.c, mainloop.c, startup.c, psqlscanslash.l, src/fe_utils/conditional.c and psqlscan.l - CVE-2026-6464 * SECURITY UPDATE: out of bounds reads in the ascii() function on invalid multibyte input, able to disclose bytes of server memory or trigger assertion failures - debian/patches/CVE-2026-18024.patch: validate the multibyte sequence length against the input length and replace the byte range assertions with ERRCODE_CHARACTER_NOT_IN_REPERTOIRE errors, in ascii() in src/backend/utils/adt/oracle_compat.c - CVE-2026-18024 * SECURITY UPDATE: stale cached plans kept enforcing outdated row level security policies after role membership or role attribute changes - debian/patches/CVE-2026-14666.patch: register syscache invalidation callbacks on pg_auth_members and pg_authid that invalidate the role dependent cached plans, in PlanCacheRoleCallback() and InitPlanCache() in src/backend/utils/cache/plancache.c - CVE-2026-14666 * SECURITY UPDATE: pgcrypto PGP encryption silently produced effectively unencrypted output when OpenSSL rejected the cipher, for example in FIPS mode, because the px_cipher_encrypt() result was never checked and the plaintext was XORed with a non encrypted block - debian/patches/CVE-2026-14663.patch: raise an error when the cipher fails during PGP processing and add the decrypt only ignore-cipher-failure option to recover data from badly encrypted messages, in contrib/pgcrypto/pgp-cfb.c, pgp-decrypt.c, pgp-encrypt.c, pgp-pgsql.c, pgp-pubkey.c, pgp.c and pgp.h - CVE-2026-14663 * SECURITY UPDATE: out of bounds writes in ecpg client programs processing bytea data from a rogue server that lacks the expected hex prefix - debian/patches/CVE-2026-16241.patch: reject bytea values shorter than two bytes or missing the \x prefix with a new ECPG_BYTEA_FORMAT error before computing decode sizes, in ecpg_get_data() in src/interfaces/ecpg/ecpglib/data.c, error.c and src/interfaces/ecpg/include/ecpgerrno.h - CVE-2026-16241
Updated packages:
  • libecpg-compat3-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:d26814f84a49952255e41e6f633476a413a68f43
  • libecpg-dev-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:cded7e1b2ffa2fe50887aa60a778180a23287fae
  • libecpg6-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:fa9e439e8111c4325908ee8b09809b4983832779
  • libpgtypes3-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:fc28865126b1cf93de5c8e465081e0e1264fa777
  • libpq-dev-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:9af14707882eb48669bd8177a1e2fc54d8a24908
  • libpq5-12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:0a1506b1e0ee54aee30fb9215c4868faf71fd511
  • postgresql12_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:389fb727e5345bbf59ab6b434cab6b9e44b6a564
  • postgresql12-client_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:50b1b6b1c9666fa1c9f8b8b4ae2a09dbf07ef8d3
  • postgresql12-doc_12.22-2~bookworm+tuxcare.els15_all.deb
    sha:dde451de765c455f900d0883ac3afdb7a24403df
  • postgresql12-plperl_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:ff224d25a0e5621d70cb3832df7e06abfb20d885
  • postgresql12-plpython3_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:c1b4f09eca10b3005b8349af7b77da32253a0f49
  • postgresql12-pltcl_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:5fda1d414b69b5d61ca0584bb1f1e94afd56d27f
  • postgresql12-server-dev_12.22-2~bookworm+tuxcare.els15_amd64.deb
    sha:f9822c8fb72691dde74ac5629ba3216848ffbc2a
  • libecpg-compat3-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:e5eb0ff9455e1c77895b31e83aa03f12f8f7ad7e
  • libecpg-dev-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:52b8205370a7eb350f19a50bc23aab8a05ff79e2
  • libecpg6-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:e60f44835a7e5175b0c2958e162d1e0acb3a5f4d
  • libpgtypes3-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:bf224862c97aeef7351d9976073c36646240aec7
  • libpq-dev-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:8ea6c3d4bb8c67d2955ed2a3b714a618728028e9
  • libpq5-12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:186b2da42274fa5b289d696d2f30a5bdbbcd0fe6
  • postgresql12_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:0661e76701ff47cdceae448b1ede890bc8eb0954
  • postgresql12-client_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:0ef00c8f41bb6de9fb9a6df0e3727724a6112f65
  • postgresql12-plperl_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:e4f6b037d4cbafc22c5efae82e46ef176708a18e
  • postgresql12-plpython3_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:89a9392824f7163e8c0c8ae2c2f7a63b756f4f9e
  • postgresql12-pltcl_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:39c14475ef8ce915bd350f511e40da9dbdab9cda
  • postgresql12-server-dev_12.22-2~bookworm+tuxcare.els15_arm64.deb
    sha:7ecdcd212b8ae1fe9d3bdec54eff9bd7e4b6a90e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.