PostgreSQL is an advanced object-relational database management system (DBMS).
Security Fix(es):
postgresql: PostgreSQL: Credential recovery via covert timing channel in MD5 password comparison (CVE-2026-6478)
postgresql: integer overflow can cause an undersized allocation and an out-of-bounds write (CVE-2026-6473)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
0:1.5.1-1.module+el8.10.0+1900+d73403430:1.5.1-1.module+el8.10.0+40057+c37a0e3d0:16.0-1.module+el8.10.0+1622+bd25b19c0:16.0-1.module+el8.10.0+1858+fcc46a790:16.0-1.module+el8.10.0+40057+c37a0e3d0:2.4.0-1.Final.module+el8.10.0+1622+bd25b19c0:2.4.0-1.Final.module+el8.10.0+1858+fcc46a790:2.4.0-1.Final.module+el8.10.0+40057+c37a0e3d0:16.14-1.module+el8.10.0+40217+78b4c4daExploitability
AV:NAC:LPR:LUI:NScope
S:UImpact
C:HI:HA:HCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H