ELSA-2026-3887

ELSA-2026-3887 - postgresql16 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-03-05

Description


[16.13-1.0.1]
- Replace upstream reference [Orabug: 37044148]

[16.13-1]
- Update to 16.13
- Fix CVE-2026-2004: PostgreSQL intarray missing validation of type of input
- Fix CVE-2026-2005: PostgreSQL pgcrypto heap buffer overflow
- Fix CVE-2026-2006: PostgreSQL missing validation of multibyte character length
- Resolves: RHEL-149364 RHEL-149398 RHEL-149332


Related CVEs


CVE-2026-2004
CVE-2026-2005
CVE-2026-2006

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 10 (aarch64) postgresql16-16.13-1.0.1.el10_1.src.rpm71a79f165edc5be4f7b2b9b2cdd4fa4f53492a97fd848a01678c43a71fcf41d7-ol10_aarch64_appstream
postgresql16-16.13-1.0.1.el10_1.src.rpm71a79f165edc5be4f7b2b9b2cdd4fa4f53492a97fd848a01678c43a71fcf41d7-ol10_aarch64_codeready_builder
postgresql-16.13-1.0.1.el10_1.aarch64.rpmfb36053450900ce4d01ac8dfa31b1630063db86ab281a4f0cc2dd1cb51a79c1f-ol10_aarch64_appstream
postgresql-contrib-16.13-1.0.1.el10_1.aarch64.rpm1207b7df49109d64a74fe2cb6bcf0df58ba866288ac0951ac177f32ba5ebfdc8-ol10_aarch64_appstream
postgresql-docs-16.13-1.0.1.el10_1.aarch64.rpma2d9597801485574278ed114f130ca4864282096ddbf1ed943aff99454703343-ol10_aarch64_appstream
postgresql-plperl-16.13-1.0.1.el10_1.aarch64.rpm99df2c2651954012ca44c883db827e2f7b7010bf6fd35301aa43438c0bc32d61-ol10_aarch64_appstream
postgresql-plpython3-16.13-1.0.1.el10_1.aarch64.rpma657321621c8ac3cf09af5c6792f417724e8c19e493eaf8baacdb6e90e5f7bb8-ol10_aarch64_appstream
postgresql-pltcl-16.13-1.0.1.el10_1.aarch64.rpmbec80b7488c020ca64a1b8a7aa8254cb72e048b97a278865b0e491422f4fda8a-ol10_aarch64_appstream
postgresql-private-devel-16.13-1.0.1.el10_1.aarch64.rpm3dd3fd4fdcd165e3c794cab45ce25803522347472eddabc34724b9d6a199974f-ol10_aarch64_appstream
postgresql-private-libs-16.13-1.0.1.el10_1.aarch64.rpmae47acd6a2064f62d4a2445591520f75a9d460babb47ca66c725be3075f24dfc-ol10_aarch64_appstream
postgresql-server-16.13-1.0.1.el10_1.aarch64.rpmb6e19deed0b35e66039f528e4574ea6ed0da5d5f591733ecc84ea77af0e8a616-ol10_aarch64_appstream
postgresql-server-devel-16.13-1.0.1.el10_1.aarch64.rpm9e5641e755e83d1219df1ea0cc14988d67d745a14ff406aca6a211fb90b260a1-ol10_aarch64_appstream
postgresql-static-16.13-1.0.1.el10_1.aarch64.rpmcc0826447091308dc9bf250bac8db76f65f50cc2fa39de5334ca3173a659e191-ol10_aarch64_appstream
postgresql-test-16.13-1.0.1.el10_1.aarch64.rpm7ced5d074ca04288c0bd04256a1d72ab88fe2cf454c3f1f7677129782e974ff2-ol10_aarch64_appstream
postgresql-test-rpm-macros-16.13-1.0.1.el10_1.noarch.rpm93b0f99b9c15031c6ddf32eb4b940a7166933e505f811b5c9b608c3be75df501-ol10_aarch64_codeready_builder
postgresql-upgrade-16.13-1.0.1.el10_1.aarch64.rpm7843b639d9056d575cc26a08bc3791996f9de02bc75a3450277892ab4f4bcded-ol10_aarch64_appstream
postgresql-upgrade-devel-16.13-1.0.1.el10_1.aarch64.rpm1e90f67086d7db64fbf427b874642d073fe8c75a6869569dec37af0b56fa04b6-ol10_aarch64_appstream
Oracle Linux 10 (x86_64) postgresql16-16.13-1.0.1.el10_1.src.rpm71a79f165edc5be4f7b2b9b2cdd4fa4f53492a97fd848a01678c43a71fcf41d7-ol10_x86_64_appstream
postgresql16-16.13-1.0.1.el10_1.src.rpm71a79f165edc5be4f7b2b9b2cdd4fa4f53492a97fd848a01678c43a71fcf41d7-ol10_x86_64_codeready_builder
postgresql-16.13-1.0.1.el10_1.x86_64.rpm326a0b3e0b96114ef3e5eb544b2d90a1e1ae8a2aa2e0ab2e6348021e7573ce85-ol10_x86_64_appstream
postgresql-contrib-16.13-1.0.1.el10_1.x86_64.rpm5363045b33f9cd92b0ab16da76c87c7ab67c216d600c7ad9db104b6392a718eb-ol10_x86_64_appstream
postgresql-docs-16.13-1.0.1.el10_1.x86_64.rpm450b3bc6727c2dcbdef7fa562c0ed2bbf88d923dd1b55ebeead7cf0414e06703-ol10_x86_64_appstream
postgresql-plperl-16.13-1.0.1.el10_1.x86_64.rpm2041e41bd5db3e933277dbbbad240aa521e8ecab9c8ab7b7a433d26da19c020a-ol10_x86_64_appstream
postgresql-plpython3-16.13-1.0.1.el10_1.x86_64.rpm32b8b4b0c611eea5921e8a797de6053a7b69d715105c07c3d10994dd54e4da94-ol10_x86_64_appstream
postgresql-pltcl-16.13-1.0.1.el10_1.x86_64.rpm11814a65f38f0afe793393faedfd31dd493ca1899544a8dd84814a5d28c1b48c-ol10_x86_64_appstream
postgresql-private-devel-16.13-1.0.1.el10_1.x86_64.rpma8c817aa0fe3e01570ca25e4644c6c1968643ebfa5cb978bfad08e005b5c2876-ol10_x86_64_appstream
postgresql-private-libs-16.13-1.0.1.el10_1.x86_64.rpm350fa94b603eec1dec1146b714637cdd35ea5b0b58e3ebb94247605584f6cf82-ol10_x86_64_appstream
postgresql-server-16.13-1.0.1.el10_1.x86_64.rpmc57f2b4acdb802266c5ca48366e451ebb13552aa8d5a30fa07a7ef0d45aa37d2-ol10_x86_64_appstream
postgresql-server-devel-16.13-1.0.1.el10_1.x86_64.rpmb22df77306099fb789995561211373e939f327a1c2a982852828c1bff9a1d029-ol10_x86_64_appstream
postgresql-static-16.13-1.0.1.el10_1.x86_64.rpmab3def76b266c0a680816f6f1b10570c780a30c8df15575a62dfa67002890a4d-ol10_x86_64_appstream
postgresql-test-16.13-1.0.1.el10_1.x86_64.rpmdc9ece6c20ce17dca7ccd1450f34d1d01cb83a29feb6a3cfac31c45731c417e8-ol10_x86_64_appstream
postgresql-test-rpm-macros-16.13-1.0.1.el10_1.noarch.rpm93b0f99b9c15031c6ddf32eb4b940a7166933e505f811b5c9b608c3be75df501-ol10_x86_64_codeready_builder
postgresql-upgrade-16.13-1.0.1.el10_1.x86_64.rpmb4711414e33f092575945b004650b048d04d6c87150cdfc6eb664f9610143fe6-ol10_x86_64_appstream
postgresql-upgrade-devel-16.13-1.0.1.el10_1.x86_64.rpm610845d6927cac2206cfd25c2147e1addb0b874d40fea14a9560b813bd6930b7-ol10_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete