SEPTEMBER 22, 2026
Live Feed
Back to database
Case File

CVE-2026-6575

MEDIUM · CVSS 4.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-05-14 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. See the original NVD description below for full technical details.

CVE
CVE-2026-6575
Severity
MEDIUM
CVSS
4.3
EPSS
0.21%

Original NVD Description

Buffer over-read in PostgreSQL function pg_restore_attribute_stats() accepts array values of unmatched length, which causes query planning to read past end of one array. This allows a table maintainer to infer memory values past that array end. Within major version 18, minor versions before PostgreSQL 18.4 are affected. Versions before PostgreSQL 18 are unaffected.

Related CVEs

Other vulnerabilities affecting the same vendor(s)