{"cve": "CVE-2026-6473", "updated": 1785147465, "url": "https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0816/", "affected": [{"ecosystem": "Debian:12", "package": "postgresql-15", "affected": null, "fixed": "15.18-0+deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2026-6473"}, {"ecosystem": "Ubuntu:24.04:LTS", "package": "postgresql-16", "affected": null, "fixed": "16.14-0ubuntu0.24.04.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2026-6473"}, {"ecosystem": "SUSE:Linux Enterprise Server 16.0", "package": "postgresql15", "affected": null, "fixed": "15.18-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:22183-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP applications 16.0", "package": "postgresql15", "affected": null, "fixed": "15.18-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:22183-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 16.0", "package": "postgresql16", "affected": null, "fixed": "16.14-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:22184-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP applications 16.0", "package": "postgresql16", "affected": null, "fixed": "16.14-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:22184-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "postgresql15", "affected": null, "fixed": "15.18-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:10807-1"}, {"ecosystem": "openSUSE:Leap 16.0", "package": "postgresql15", "affected": null, "fixed": "15.18-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:21103-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "postgresql16", "affected": null, "fixed": "16.14-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:10808-1"}, {"ecosystem": "openSUSE:Leap 16.0", "package": "postgresql16", "affected": null, "fixed": "16.14-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:21104-1"}, {"ecosystem": "Red Hat:hummingbird:1", "package": "postgresql", "affected": null, "fixed": "0:18.4-0.1.hum1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:22878"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el8.10.0+24361+29e043a0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26181"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.module+el9.8.0+24360+ff98e86a", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26203"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "postgresql", "affected": null, "fixed": "0:18.4-2.module+el9.8.0+24359+da7fad50", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26204"}, {"ecosystem": "Red Hat:rhel_e4s:9.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.module+el9.4.0+24391+f6914bcd", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26524"}, {"ecosystem": "Red Hat:rhel_eus:9.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.module+el9.6.0+24387+67b4079a", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26525"}, {"ecosystem": "Red Hat:rhel_e4s:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el8.8.0+24395+e7b9b4b6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26561"}, {"ecosystem": "Red Hat:rhel_tus:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el8.8.0+24395+e7b9b4b6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:26561"}, {"ecosystem": "Red Hat:enterprise_linux_eus:10.0", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.el10_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:27718"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-3.el9_8", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:27741"}, {"ecosystem": "Red Hat:enterprise_linux:10.2", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.el10_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:27743"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el9.8.0+24358+32c5830e", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:28037"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "postgresql", "affected": null, "fixed": "0:16.14-1.module+el8.10.0+24339+d919fb58", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:28143"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-3.module+el8.10.0+24363+8e5fd2e3", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:28208"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-7.module+el8.10.0+24362+fcf88eed", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:28999"}, {"ecosystem": "Red Hat:rhel_eus:9.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.el9_6.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:29212"}, {"ecosystem": "Red Hat:rhel_aus:8.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.6.0+24433+21669af6.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:29815"}, {"ecosystem": "Red Hat:rhel_eus_long_life:8.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.6.0+24433+21669af6.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:29815"}, {"ecosystem": "Red Hat:rhel_e4s:9.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.el9_4.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:29904"}, {"ecosystem": "Red Hat:rhel_e4s:9.2::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.el9_2.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:29953"}, {"ecosystem": "Red Hat:rhel_eus:9.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el9.6.0+24427+6664975e", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:32983"}, {"ecosystem": "Red Hat:rhel_aus:8.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.6.0+24447+7305b672.3", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:32994"}, {"ecosystem": "Red Hat:rhel_eus_long_life:8.6::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.6.0+24447+7305b672.3", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:32994"}, {"ecosystem": "Red Hat:rhel_e4s:9.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el9.4.0+24401+d70df5dc", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:33441"}, {"ecosystem": "Red Hat:rhel_e4s:9.2::appstream", "package": "postgresql", "affected": null, "fixed": "0:15.18-1.module+el9.2.0+24451+e803ec54", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:33497"}, {"ecosystem": "Red Hat:rhel_e4s:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.8.0+24458+21f81c54.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34043"}, {"ecosystem": "Red Hat:rhel_tus:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.8.0+24458+21f81c54.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34043"}, {"ecosystem": "Red Hat:rhel_aus:8.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.4.0+24442+74e4dc28.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34362"}, {"ecosystem": "Red Hat:rhel_eus_long_life:8.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:12.22-1.module+el8.4.0+24442+74e4dc28.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34362"}, {"ecosystem": "Red Hat:rhel_aus:8.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.4.0+24476+2b5ce087.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34363"}, {"ecosystem": "Red Hat:rhel_eus_long_life:8.4::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.4.0+24476+2b5ce087.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:34363"}, {"ecosystem": "Red Hat:rhel_e4s:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.8.0+24513+386abafd.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:42555"}, {"ecosystem": "Red Hat:rhel_tus:8.8::appstream", "package": "postgresql", "affected": null, "fixed": "0:13.23-1.module+el8.8.0+24513+386abafd.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:42555"}, {"ecosystem": "Red Hat:enterprise_linux_eus:10.0", "package": "postgresql16", "affected": null, "fixed": "0:16.14-1.el10_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:27718"}, {"ecosystem": "Red Hat:enterprise_linux:10.2", "package": "postgresql16", "affected": null, "fixed": "0:16.14-1.el10_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:27743"}]}