logo

20-Year-Old PostgreSQL Flaw Gets Public PoC Exploit for Remote Code Execution

ID: d809922c-17b3-5550-9777-7f2d7859964b

STIX ID: report--d809922c-17b3-5550-9777-7f2d7859964b

Feed Name: GBHackers

Threat Score
80/100

Date Published: 2026-05-19

Date Updated: 2026-05-19

Author: Divya

...
...

A public proof-of-concept for CVE-2026-2005 reveals a decades-old heap-based buffer overflow in PostgreSQL's pgcrypto PGP session key parsing that can be chained to leak heap pointers, perform arbitrary memory read/write, escalate to the PostgreSQL superuser, and run OS commands via COPY FROM PROGRAM; while the exploit requires matching build offsets which may limit broad abuse, affected pgcrypto-enabled deployments face high risk and should apply patches, restrict pgcrypto usage, and monitor for exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.