[CLSA-2026:1780421329] Fix CVE(s): CVE-2024-10976, CVE-2025-12817
Type:
security
Severity:
Moderate
Release date:
2026-06-02 17:29:31 UTC
Description:
* SECURITY UPDATE: stack buffer overflow and SQL injection in refint module - debian/patches/CVE-2026-6637.patch: replace fixed-size stack buffers with StringInfo and use quote_literal_cstr() for proper SQL escaping in check_primary_key() and check_foreign_key() - CVE-2026-6637
Updated packages:
  • libecpg-compat3-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:8e684fbeffcc083392b4cfa5dfbc0bae27c113e3
  • libecpg-dev-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:24a56c92975ac998695dabe26f6d2f36e3ff993f
  • libecpg6-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:de4a83eed8e26d99394a6ae6d54e815cf0756bbb
  • libpgtypes3-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:c85da52d4818cc9e6de3ba3f9149e54f1ba05b6d
  • libpq-dev-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:a0b913b88f9ef618b09c084b1f6ecf560243f109
  • libpq5-11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:f29534c94a70f396da9366827d1e89f36f7618bc
  • postgresql11_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:63b246fccd002a915f5e68f86395dd8f13fe0c14
  • postgresql11-client_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:460679f2ea04b30c3eb3d71fbddbb3dac1ee9705
  • postgresql11-doc_11.22-1~trixie+tuxcare.els8_all.deb
    sha:221909173f65b69919a85a4b0078b3cb387e9bad
  • postgresql11-plperl_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:7c0edef547dd059d0456a3eecf6b709d05c17886
  • postgresql11-plpython3_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:e9704f14ce2daf1a38e3106f3fddc44e26926e99
  • postgresql11-pltcl_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:9534331c17739db9d76d085cb8605f558020b0df
  • postgresql11-server-dev_11.22-1~trixie+tuxcare.els8_amd64.deb
    sha:c06afcd6b7b438b9646d2ae28576a4bd1de2fdf5
  • libecpg-compat3-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:94da6260e65049d2c085e521ae9b7508c2f38ca7
  • libecpg-dev-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:9ccd020f0194ef9b5a3fe43f4a7ff5bca3f3b666
  • libecpg6-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:a4366d535bbeed586dcf5adb713a441baac378f5
  • libpgtypes3-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:692611d8a55170fef9617886c730538c4d86d71d
  • libpq-dev-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:b8b8c4177f3f167f23ddac7af4047ef3dc599ccf
  • libpq5-11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:aa16db423a55b8ff4991008f79e5e0b9b630acd5
  • postgresql11_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:02914e99ee07efd1b1546e9c4b4854c07bcdbfc0
  • postgresql11-client_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:1fb1a6549ba337d8dff1bc932a9f3f4b481bafd8
  • postgresql11-doc_11.22-1~trixie+tuxcare.els8_all.deb
    sha:221909173f65b69919a85a4b0078b3cb387e9bad
  • postgresql11-plperl_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:8878fdf9a66efb4ffcda4b00d465783a3f365fc3
  • postgresql11-plpython3_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:481dfdbbe69bae8853fd0388ee7aa47de743f230
  • postgresql11-pltcl_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:8ee2a30a14a4b64811c6265b130eaa10df6aeaf9
  • postgresql11-server-dev_11.22-1~trixie+tuxcare.els8_arm64.deb
    sha:7ee2df21f7a19493032954d1e7476d3d245a8933
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.