[CLSA-2026:1790949768] Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2026-10-02 14:03:14 UTC
Description:
* Port of debian13els 13.23-1~trixie+tuxcare.els17. * SECURITY UPDATE: memory disclosure via ctid selectivity estimation - debian/patches/CVE-2026-14668.patch - CVE-2026-14668 * SECURITY UPDATE: heap buffer overflow in PL/Perl with tied arrays and hashes - debian/patches/CVE-2026-14670.patch - CVE-2026-14670 * SECURITY UPDATE: type confusion via stale cached plans in contrib/refint - debian/patches/CVE-2026-14671.patch - CVE-2026-14671 * SECURITY UPDATE: integer wraparound in tsvector and tsquery construction - debian/patches/CVE-2026-14662.patch - CVE-2026-14662 * SECURITY UPDATE: heap buffer overflow in regexp match and split functions - debian/patches/CVE-2026-14664.patch - CVE-2026-14664
Updated packages:
  • postgresql-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:45016630b74eb9ab64a8e7c0b8523d811e817417
  • postgresql-client-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:96ac60ded9ceed1c7981a6faf96508b8768b2aac
  • postgresql-doc-13_13.23-1.pgdg22.04+1+tuxcare.els3_all.deb
    sha:1fa3f1b0b0832128c47eda0afef1f6543884af79
  • postgresql-plperl-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:3f57c88628d024416a0bbccf19c413ad249a1aff
  • postgresql-plpython3-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:8e63db8a12bb4ee55ca7af1a2f1897e521cf852a
  • postgresql-pltcl-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:4021d141a63120fb4fcca668c24322e0295dea88
  • postgresql-server-dev-13_13.23-1.pgdg22.04+1+tuxcare.els3_amd64.deb
    sha:b8184d957b6129fdcb1321b0c491c18fe98bb14a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.