Bug 2541483 (CVE-2026-97469) - CVE-2026-97469 postgresql_anonymizer: postgresql_anonymizer: Information disclosure via restricted function execution in subqueries
Summary: CVE-2026-97469 postgresql_anonymizer: postgresql_anonymizer: Information disc...
Keywords:
Status: NEW
Alias: CVE-2026-97469
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2542383 2542384 2542387 2542388
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-09-25 15:52 UTC by OSIDB Bzimport
Modified: 2026-09-28 09:52 UTC (History)
0 users

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-09-25 15:52:29 UTC
PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() function and collects (seed, hash_output) pairs to perform an offline brute-force attack and deduce the salt. A masked role can run a RESTRICTED function when the call is placed inside the sub-select. The problem is resolved in PostgreSQL Anonymizer 3.2.3 and later versions


Note You need to log in before you can comment on or make changes to this bug.