The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Redhat_linux | — | Upgrade osbuild-composer-debugsourceUpgrade osbuild-composer-workerUpgrade osbuild-composer-worker-debuginfoNo solution existsUpgrade osbuild-composerUpgrade osbuild-composer-coreUpgrade osbuild-composer-tests-debuginfoUpgrade osbuild-composer-core-debuginfoUpgrade osbuild-composer-debuginfo | Jun 4, 2026 | Mar 26, 2026 |
| Rocky_linux | — | Upgrade osbuild-composer-worker-debuginfoUpgrade osbuild-composer-coreUpgrade osbuild-composerUpgrade osbuild-composer-core-debuginfoUpgrade osbuild-composer-workerUpgrade osbuild-composer-debuginfoUpgrade osbuild-composer-debugsource | Jun 8, 2026 | Jun 5, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub