Bug 2538500 (CVE-2026-61819)
| Summary: | CVE-2026-61819 pg_partman: privilege escalation via SQL injection in when using pg_jobmon and encountering exception | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | urgent | Docs Contact: | |
| Priority: | urgent | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in pg_partman. A database user with partman_user privileges can exploit a SQL injection vulnerability by crafting a malicious parent-table name. When the extension is configured to use pg_jobmon, this crafted input is improperly processed during an exception, allowing the injection and execution of arbitrary SQL commands. This grants superuser privileges within PostgreSQL, potentially leading to full database compromise and operating-system command execution.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2540725 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-09-22 18:50:06 UTC
|