PostgreSQL
cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*, +2 more
- 18.1
- 18.0
A heap buffer overflow vulnerability has been identified in the PostgreSQL `pg_trgm` extension, affecting versions 18.1 and 18.0. This vulnerability allows a database user to manipulate memory through a crafted input string. While the exact impacts are unknown, there is a possibility that such an attack could lead to privilege escalation.
Exploitation of this vulnerability causes a heap buffer overflow, which can potentially be leveraged for arbitrary code execution or privilege escalation.
Users can upgrade to PostgreSQL version 18.2 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.