Postgresql Global Development Group · Postgresql · CVE-2026-6575
**Name of the Vulnerable Software and Affected Versions**
PostgreSQL versions 18.0 through 18.3
**Description**
A buffer over-read occurs in the `pg restore attribute stats()` function when it accepts array values of unmatched length. This causes query planning to read past the end of one array, allowing a table maintainer to infer memory values beyond that boundary.
**Recommendations**
Update to version 18.4.