Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute arbitrary code as the operating system user running the database, via conflation of range and multirange values. Within major version 18, minor versions before PostgreSQL 18.5 are affected. Versions before PostgreSQL 18 are unaffected.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.postgresql.org/support/security/CVE-2026-16238/ |
|
History
Thu, 13 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Aug 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Postgresql
Postgresql postgresql |
|
| Vendors & Products |
Postgresql
Postgresql postgresql |
Thu, 13 Aug 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute arbitrary code as the operating system user running the database, via conflation of range and multirange values. Within major version 18, minor versions before PostgreSQL 18.5 are affected. Versions before PostgreSQL 18 are unaffected. | |
| Title | PostgreSQL type confusion in pg_restore_attribute_stats() executes arbitrary code | |
| Weaknesses | CWE-843 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: PostgreSQL
Published:
Updated: 2026-08-13T15:38:15.538Z
Reserved: 2026-07-20T01:55:07.055Z
Link: CVE-2026-16238
Updated: 2026-08-13T15:38:10.884Z
Status : Received
Published: 2026-08-13T13:17:46.383
Modified: 2026-08-13T16:17:57.990
Link: CVE-2026-16238
No data.
OpenCVE Enrichment
Updated: 2026-08-13T14:45:03Z