Critical PostgreSQL Vulnerabilities in Oracle Linux 8 and 9

Critical PostgreSQL Vulnerabilities in Oracle Linux 8 and 9

First seen 26 Jun 2026, 09:38 UTC Linuxsecurity 84% similarity 72.0
Share:

Article Content

Browse articles
ThreatCluster

Oracle Linux has released important security advisories for PostgreSQL vulnerabilities affecting versions 15 and 16. CVE-2026-6478, a critical vulnerability, has been identified in PostgreSQL 15, prompting immediate updates. The vulnerabilities impact Oracle Linux 8 and 9, with specific advisories ELSA-2026-28037 and ELSA-2026-28143 detailing the necessary patches. PostgreSQL 16 is also affected, with updates available for pgaudit, pg_repack, and postgis modules. Administrators are urged to apply the patches promptly to mitigate risks. The vulnerabilities could lead to unauthorized access and data breaches if left unaddressed. The advisories emphasize the urgency of updating systems to the latest versions to protect against potential exploitation.

Key Points: • CVE-2026-6478 affects PostgreSQL 15, requiring immediate patching. • Oracle Linux 8 and 9 users must update their PostgreSQL installations to mitigate risks. • Multiple modules including pgaudit and pg_repack have received critical updates.

ThreatCluster AI

Timeline

2026-05-14
CVE-2026-6478 published
A critical vulnerability in PostgreSQL 15 was disclosed, affecting multiple systems.
Linuxsecurity
2026-05-14
CVE-2026-6477 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-14
CVE-2026-6473 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-14
CVE-2026-6475 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-24
Oracle Linux 8 PostgreSQL advisory released
ELSA-2026-28143 was published, detailing vulnerabilities in PostgreSQL 16 and necessary updates.
Linuxsecurity
2026-06-26
Oracle Linux 9 PostgreSQL advisory released
ELSA-2026-28037 was published, addressing vulnerabilities in PostgreSQL 15 and urging updates.
Linuxsecurity

Community

Browse all →