Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2026-39

JLSEC-2026-39

JLSEC Published
Modified
Affected Packages
LibPQ_jll < 16.0.0+0
Aliases / Upstream
CVE-2022-41862

In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.

References