Back to Security Advisories
High 2026-07-23

Libpq Security Update — AlmaLinux 9 (ALSA-2026:44308)

AlmaLinux 9

The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers. Security Fix(es): * postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477) For more details about the security issue(s), …

The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers.

Security Fix(es):

* postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477)

For more details about the security issue(s), …

Type:
security

Severity:
important

Release date:
2026-07-23

Description:
The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers.

Security Fix(es):

* postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updated packages listed below:

Architecture Package Checksum
aarch64 libpq-13.23-3.el9_8.aarch64.rpm 46b5e332ea779ae6891a8f75d6be444a60f45ec8b71798e8fec606176fae87de
aarch64 libpq-devel-13.23-3.el9_8.aarch64.rpm 7f8fc44d6727e4526760c9b964ba56afb076b6bb9e31e36b3764214285ee4f11
i686 libpq-devel-13.23-3.el9_8.i686.rpm 138d5d63f5d51cdcbba3510fcca8768b6a137a376d6c08601da2f81606e081fa
i686 libpq-13.23-3.el9_8.i686.rpm c4b5d0360b6c4e2780b3fc5b3e9df4dc2c142aedb28d9b90384c4c210482033e
ppc64le libpq-devel-13.23-3.el9_8.ppc64le.rpm 15c36be40ad335264d5d7833b4be31b2d2e245e96459ee511e68d43d890ada55
ppc64le libpq-13.23-3.el9_8.ppc64le.rpm bf375627fd0ca83743a47ae7437559ca1d1e169f4bc31581c34efd409dec426c
s390x libpq-devel-13.23-3.el9_8.s390x.rpm 28cc5fcf2588fdb50a1b704a6e9ded33e4e12671203fde64d4f101b9e55b07d4
s390x libpq-13.23-3.el9_8.s390x.rpm e12960c88b662fd927ed06c3f26e1bb46aad01a1ee8ff99a069ede4f3767ef25
x86_64 libpq-13.23-3.el9_8.x86_64.rpm 43079f3d3756045509a48082323cde3ecd02d982a7d90b661cec4f04eafb831b
x86_64 libpq-devel-13.23-3.el9_8.x86_64.rpm 784ba967d989b6673c604a7a6608259953b27d7f2cae7ff7613238e7c9a69c66

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

How to Apply the Fix

Update the affected packages on your server to the patched release, then restart the relevant services.

sudo dnf update
More Information

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System