[Apollo] Advisories Statistics light light Login

RLSA-2026:4110

Security Mirrored from RHSA-2026:4110
Issued at: 2026-03-10
Updated at: 2026-03-10

Synopsis

Important: postgresql:16 security update



Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

* postgresql: PostgreSQL missing validation of multibyte character length executes arbitrary code (CVE-2026-2006)

* postgresql: PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary code (CVE-2026-2004)

* postgresql: PostgreSQL pgcrypto heap buffer overflow executes arbitrary code (CVE-2026-2005)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes

2439322 2439324 2439325 2439326

CVEs

CVE-2026-2003 CVE-2026-2004 CVE-2026-2005 CVE-2026-2006

Affected packages

Rocky Linux 9 aarch64 - AppStream

pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.aarch64.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.aarch64.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.aarch64.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.aarch64.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.aarch64.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.aarch64.rpm

Rocky Linux 9 ppc64le - AppStream

pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.ppc64le.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.ppc64le.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.ppc64le.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.ppc64le.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.ppc64le.rpm

Rocky Linux 9 s390x - AppStream

pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.s390x.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.s390x.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.s390x.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.s390x.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.s390x.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.s390x.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.s390x.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.s390x.rpm

Rocky Linux 9 x86_64 - AppStream

pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.src.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.src.rpm pgaudit-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgaudit-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgaudit-debuginfo-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40060+39463e08.x86_64.rpm pgaudit-debugsource-0:16.0-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.src.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.src.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm pg_repack-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm pg_repack-debuginfo-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40060+39463e08.x86_64.rpm pg_repack-debugsource-0:1.5.1-1.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.src.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.src.rpm pgvector-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgvector-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm pgvector-debuginfo-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40012+a654bbaa.x86_64.rpm pgvector-debugsource-0:0.6.2-2.module+el9.7.0+40060+39463e08.x86_64.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.src.rpm postgis-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-client-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-client-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-debugsource-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-docs-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-upgrade-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-upgrade-debuginfo-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgis-utils-0:3.5.3-3.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.src.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.src.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgres-decoderbufs-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm postgres-decoderbufs-debuginfo-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40012+a654bbaa.x86_64.rpm postgres-decoderbufs-debugsource-0:2.4.0-1.Final.module+el9.7.0+40060+39463e08.x86_64.rpm