Known vulnerabilities in postgresql17-server-devel
Vendor:
SUSE
Software:
postgresql17-server-devel
Software CPE:
cpe:2.3:o:suse:postgresql17-server-devel:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
25
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (25)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU131454 - Missing Authorization CVE-2026-6472 |
CWE-862 | Low | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 25 more |
||
| #VU131455 - Integer overflow CVE-2026-6473 |
CWE-190 | Low | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 46 more |
||
| #VU131456 - Use of Externally-Controlled Format String CVE-2026-6474 |
CWE-134 | Low | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 24 more |
||
| #VU131457 - Improper Link Resolution Before File Access ('Link Following') CVE-2026-6475 |
CWE-59 | Medium | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 41 more |
||
| #VU131458 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2026-6476 |
CWE-89 | Low | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB2026051852 and 6 more |
||
| #VU131459 - Stack-based buffer overflow CVE-2026-6477 |
CWE-121 | High | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 49 more |
||
| #VU131460 - Information Exposure Through Timing Discrepancy CVE-2026-6478 |
CWE-208 | Medium | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 48 more |
||
| #VU131461 - Uncontrolled Recursion CVE-2026-6479 |
CWE-674 | Medium | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 25 more |
||
| #VU131463 - Stack-based buffer overflow CVE-2026-6637 |
CWE-121 | Medium | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 27 more |
||
| #VU131464 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2026-6638 |
CWE-89 | Low | 17.10-150200.5.28.1, 17.10-150600.13.27.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB2026051852 and 11 more |
||
| #VU122779 - Memory corruption CVE-2026-2006 |
CWE-119 | Medium | 17.8-150200.5.22.1, 17.9-150200.5.25.1, 17.9-150600.13.24.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 62 more |
||
| #VU122778 - Heap-based Buffer Overflow CVE-2026-2005 |
CWE-122 | Medium | 17.8-150200.5.22.1, 17.9-150600.13.24.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 58 more |
||
| #VU122777 - Type confusion CVE-2026-2004 |
CWE-843 | Medium | 17.8-150200.5.22.1, 17.9-150600.13.24.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 58 more |
||
| #VU122776 - Out-of-bounds read CVE-2026-2003 |
CWE-125 | Medium | 17.8-150200.5.22.1, 17.9-150600.13.24.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 37 more |
||
| #VU118520 - Integer overflow CVE-2025-12818 |
CWE-190 | Medium | 17.7-150200.5.19.1, 17.7-150600.13.19.1 | 13.11.2025 |
SB2025111368 SB2025112204 SB2025112205 and 64 more |
||
| #VU118519 - Missing Authorization CVE-2025-12817 |
CWE-862 | Low | 17.7-150200.5.19.1, 17.7-150600.13.19.1 | 13.11.2025 |
SB2025111368 SB2025112204 SB2025112205 and 48 more |
||
| #VU114096 - Improper input validation CVE-2025-8715 |
CWE-20 | Medium | 17.6-150200.5.16.1, 17.6-150600.13.16.1 | 14.08.2025 |
SB2025081496 SB2025081898 SB2025082551 and 51 more |
||
| #VU114095 - Improper Control of Generation of Code ('Code Injection') CVE-2025-8714 |
CWE-94 | Low | 17.6-150200.5.16.1, 17.6-150600.13.16.1 | 14.08.2025 |
SB2025081496 SB2025081898 SB2025082551 and 53 more |
||
| #VU114094 - Permissions, Privileges, and Access Controls CVE-2025-8713 |
CWE-264 | Low | 17.6-150200.5.16.1, 17.6-150600.13.16.1 | 14.08.2025 |
SB2025081496 SB2025081898 SB2025082551 and 31 more |
||
| #VU108834 - Buffer over-read CVE-2025-4207 |
CWE-126 | Medium | 17.5-150200.5.13.1, 17.5-150600.13.13.1 | 09.05.2025 |
SB2025050920 SB2025051669 SB20250521157 and 37 more |
Showing elements 1 - 20 out of 25