CyberRota Analysis
AI-GeneratedA heap buffer overflow vulnerability in PostgreSQL's pg_stat_statements allows attackers to execute arbitrary code as the database's operating system user by crafting specific queries with array constants. This high-severity issue affects PostgreSQL version 18 and minor versions prior to 18.5, making it critical for database administrators using these versions to prioritize patching to mitigate potential exploitation risks.
Original NVD Description
Heap buffer overflow in PostgreSQL pg_stat_statements allows the query author to execute arbitrary code as the operating system user running the database, via crafted queries containing array constants. Within major version 18, minor versions before PostgreSQL 18.5 are affected. Versions before PostgreSQL 18 are unaffected.