ELSA-2026-22304

ELSA-2026-22304 - postgresql-jdbc security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-06-23

Description


[42.2.28-2.2]
- Add tests for CVE-2026-42198

[42.2.28-2.1]
- Fix CVE-2026-42198: limit SCRAM PBKDF2 iterations to prevent DoS
- Resolves: RHEL-173489


Related CVEs


CVE-2026-42198

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) postgresql-jdbc-42.2.28-2.el9_8.2.src.rpm6815d233c927c92993914028ad84b14e39c42a17222eaeead5fbc9ece0bf6f43-ol9_aarch64_appstream
postgresql-jdbc-42.2.28-2.el9_8.2.noarch.rpmf408134358432c0aed0b3572cda897f73ac64f099d24c449486ecb955e04e5da-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) postgresql-jdbc-42.2.28-2.el9_8.2.src.rpm6815d233c927c92993914028ad84b14e39c42a17222eaeead5fbc9ece0bf6f43-ol9_x86_64_appstream
postgresql-jdbc-42.2.28-2.el9_8.2.noarch.rpmf408134358432c0aed0b3572cda897f73ac64f099d24c449486ecb955e04e5da-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete