Issued at: 2026-03-10
Updated at: 2026-03-10
Synopsis
Important: postgresql:16 security update
Description
PostgreSQL is an advanced object-relational database management system (DBMS).
Security Fix(es):
* postgresql: PostgreSQL missing validation of multibyte character length executes arbitrary code (CVE-2026-2006)
* postgresql: PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary code (CVE-2026-2004)
* postgresql: PostgreSQL pgcrypto heap buffer overflow executes arbitrary code (CVE-2026-2005)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected products
Rocky Linux 9 aarch64
Rocky Linux 9 ppc64le
Rocky Linux 9 s390x
Rocky Linux 9 x86_64
Fixes
2439322
2439324
2439325
2439326
CVEs
CVE-2026-2003
CVE-2026-2004
CVE-2026-2005
CVE-2026-2006
Affected packages
Rocky Linux 9 aarch64 - AppStream
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm
postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm
Rocky Linux 9 ppc64le - AppStream
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm
postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm
Rocky Linux 9 s390x - AppStream
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm
postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm
Rocky Linux 9 x86_64 - AppStream
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm
pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm
pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm
pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm
pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm
postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm
postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm
postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm