Known vulnerabilities in postgresql18-debugsource
Vendor:
SUSE
Software:
postgresql18-debugsource
Software CPE:
cpe:2.3:o:suse:postgresql18-debugsource:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
18
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (18)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU131454 - Missing Authorization CVE-2026-6472 |
CWE-862 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 27 more |
||
| #VU131455 - Integer overflow CVE-2026-6473 |
CWE-190 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 55 more |
||
| #VU131456 - Use of Externally-Controlled Format String CVE-2026-6474 |
CWE-134 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 26 more |
||
| #VU131457 - Improper Link Resolution Before File Access ('Link Following') CVE-2026-6475 |
CWE-59 | Medium | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 43 more |
||
| #VU131458 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2026-6476 |
CWE-89 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB2026051852 and 7 more |
||
| #VU131459 - Stack-based buffer overflow CVE-2026-6477 |
CWE-121 | High | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 51 more |
||
| #VU131460 - Information Exposure Through Timing Discrepancy CVE-2026-6478 |
CWE-208 | Medium | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 50 more |
||
| #VU131461 - Uncontrolled Recursion CVE-2026-6479 |
CWE-674 | Medium | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 30 more |
||
| #VU131462 - Out-of-bounds read CVE-2026-6575 |
CWE-125 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB2026051853 SB2026051854 and 3 more |
||
| #VU131463 - Stack-based buffer overflow CVE-2026-6637 |
CWE-121 | Medium | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB20260514109 and 29 more |
||
| #VU131464 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2026-6638 |
CWE-89 | Low | 18.4-150200.5.12.1, 18.4-150600.13.11.1 | 14.05.2026 |
SB20260514106 SB20260514108 SB2026051852 and 12 more |
||
| #VU122780 - Heap-based Buffer Overflow CVE-2026-2007 |
CWE-122 | Medium | 18.2-150200.5.6.1, 18.3-150600.13.8.1 | 12.02.2026 |
SB2026021258 SB2026022046 SB2026022047 and 2 more |
||
| #VU122779 - Memory corruption CVE-2026-2006 |
CWE-119 | Medium | 18.2-150200.5.6.1, 18.3-150200.5.9.1, 18.3-150600.13.8.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 69 more |
||
| #VU122778 - Heap-based Buffer Overflow CVE-2026-2005 |
CWE-122 | Medium | 18.2-150200.5.6.1, 18.3-150600.13.8.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 60 more |
||
| #VU122777 - Type confusion CVE-2026-2004 |
CWE-843 | Medium | 18.2-150200.5.6.1, 18.3-150600.13.8.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 60 more |
||
| #VU122776 - Out-of-bounds read CVE-2026-2003 |
CWE-125 | Medium | 18.2-150200.5.6.1, 18.3-150600.13.8.1 | 12.02.2026 |
SB2026021258 SB2026021302 SB2026021303 and 39 more |
||
| #VU118520 - Integer overflow CVE-2025-12818 |
CWE-190 | Medium | 18.1-150200.5.3.1, 18.1-150600.13.3.1 | 13.11.2025 |
SB2025111368 SB2025112204 SB2025112205 and 64 more |
||
| #VU118519 - Missing Authorization CVE-2025-12817 |
CWE-862 | Low | 18.1-150200.5.3.1, 18.1-150600.13.3.1 | 13.11.2025 |
SB2025111368 SB2025112204 SB2025112205 and 49 more |