THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-14668 (HIGH 8.1) — Type confusion regarding input of PostgreSQL ctid data type selectivity estimator allows an object creator to view a calculation derived from the value of an arbitrary 4-byte span of memory, via a chosen non-ctid input. While the calculation loses precision, substantial memory v

[NVD] CVE-2026-14668 (HIGH 8.1) — Type confusion regarding input of PostgreSQL ctid data type selectivity estimator allows an object creator to view a calculation derived from the value of an arbitrary 4-byte span of memory, via a chosen non-ctid input. While the calculation loses precision, substantial memory v

mednvdPublished 2026-08-13

CVE-2026-14668 CVSS: 8.1 HIGH Published: 2026-08-13T13:17:44.137

Type confusion regarding input of PostgreSQL ctid data type selectivity estimator allows an object creator to view a calculation derived from the value of an arbitrary 4-byte span of memory, via a chosen non-ctid input. While the calculation loses precision, substantial memory value recovery appears possible. Versions before Postg

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-14668