Stack-based buffer overflow in PostgreSQL - CVE-2026-6637
Published: May 14, 2026
PostgreSQL
Detailed vulnerability description
The vulnerability allows a remote user to execute arbitrary code as the operating system user running the database.
The vulnerability exists due to a stack-based buffer overflow in the refint module when processing crafted input. A remote user can supply crafted input to execute arbitrary code as the operating system user running the database.