Skip to content
Critical PostgreSQL Vulnerabilities in Oracle Linux 8 and 9

Critical PostgreSQL Vulnerabilities in Oracle Linux 8 and 9

First seen 26 Jun 2026, 09:38 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •June 27, 2026 at 09:27 UTC
  • •CVE-2026-6478 affects PostgreSQL 15, requiring immediate patching.
  • •Oracle Linux 8 and 9 users must update their PostgreSQL installations to mitigate risks.
  • •Multiple modules including pgaudit and pg_repack have received critical updates.

Oracle Linux has released important security advisories for PostgreSQL vulnerabilities affecting versions 15 and 16. CVE-2026-6478, a critical vulnerability, has been identified in PostgreSQL 15, prompting immediate updates. The vulnerabilities impact Oracle Linux 8 and 9, with specific advisories ELSA-2026-28037 and ELSA-2026-28143 detailing the necessary patches. PostgreSQL 16 is also affected, with updates available for pgaudit, pg_repack, and postgis modules. Administrators are urged to apply the patches promptly to mitigate risks. The vulnerabilities could lead to unauthorized access and data breaches if left unaddressed. The advisories emphasize the urgency of updating systems to the latest versions to protect against potential exploitation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 93d ago How this analysis works

Timeline

2026-05-14
CVE-2026-6478 published
A critical vulnerability in PostgreSQL 15 was disclosed, affecting multiple systems.
Linuxsecurity
2026-05-14
CVE-2026-6477 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-14
CVE-2026-6473 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-14
CVE-2026-6475 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-24
Oracle Linux 8 PostgreSQL advisory released
ELSA-2026-28143 was published, detailing vulnerabilities in PostgreSQL 16 and necessary updates.
Linuxsecurity
2026-06-26
Oracle Linux 9 PostgreSQL advisory released
ELSA-2026-28037 was published, addressing vulnerabilities in PostgreSQL 15 and urging updates.
Linuxsecurity

More articles in this cluster (3)

Following this threat?

Track CVE-2026-6473 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed