- What: Security update for libpq
- Impact: Red Hat Enterprise Linux 8.6 systems
Red Hat Product Errata RHSA-2026:47090 - Security Advisory Issued: 2026-07-28 Updated: 2026-07-28 RHSA-2026:47090 - Security Advisory Overview Updated Packages Synopsis Important: libpq security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for libpq is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers. Security Fix(es): postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.6 x86_64 Red Hat Enterprise Linux Server - AUS 8.6 x86_64 Fixes BZ - 2477442 - CVE-2026-6477 postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory CVEs CVE-2026-6477 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.6 SRPM libpq-13.23-1.el8_6.1.src.rpm SHA-256: cf5ebf11a0685481585366c6a309985add56243e5b7896219fcf50f2f1785a91 x86_64 libpq-13.23-1.el8_6.1.i686.rpm SHA-256: 51a7a34bf3adf0c1d45ed0330f4d694feea326a5200c8f7265cf3f5a0dfe2efb libpq-13.23-1.el8_6.1.x86_64.rpm SHA-256: ae47523d8ee968272db3f395748ee7c69b234d1f1fa0685ffeaf8720735d8115 libpq-debuginfo-13.23-1.el8_6.1.i686.rpm SHA-256: 0309e8247ff24d74dcbfc8de4b9064e67ae6ae41ed73acbd0c820ec01420a048 libpq-debuginfo-13.23-1.el8_6.1.x86_64.rpm SHA-256: b48f309acedcd547f1bcf8310e59e8898b0d379fb733cde0996c86f2c24fa54e libpq-debugsource-13.23-1.el8_6.1.i686.rpm SHA-256: 1b6e7865ab05dafa0d26f7f85fdd67eb3c69a8246c33c1f65c4d1b08285ce0ce libpq-debugsource-13.23-1.el8_6.1.x86_64.rpm SHA-256: 234652535d6e6b02677312b202fd79fb07288609ab870edb212ea8ddec4bcc1a libpq-devel-13.23-1.el8_6.1.i686.rpm SHA-256: cdc64cf3c0c746ddbaa4f0c34afb835cdc5600725af5e9cc4349924ede495c7d libpq-devel-13.23-1.el8_6.1.x86_64.rpm SHA-256: bb8fdb2ee888e05427ab3843f8e583669993a35776a896d9c9cb8f1c4ff7b4c6 libpq-devel-debuginfo-13.23-1.el8_6.1.i686.rpm SHA-256: e5d22590d0d1de43ef7a349e681ed257ad2f1b442e65592e0ae84317f64b4f16 libpq-devel-debuginfo-13.23-1.el8_6.1.x86_64.rpm SHA-256: 50f093f1868a5b8e17bad6b0cdaa457d620bc9a4d3494b445b7ade2af9630cc2 Red Hat Enterprise Linux Server - AUS 8.6 SRPM libpq-13.23-1.el8_6.1.src.rpm SHA-256: cf5ebf11a0685481585366c6a309985add56243e5b7896219fcf50f2f1785a91 x86_64 libpq-13.23-1.el8_6.1.i686.rpm SHA-256: 51a7a34bf3adf0c1d45ed0330f4d694feea326a5200c8f7265cf3f5a0dfe2efb libpq-13.23-1.el8_6.1.x86_64.rpm SHA-256: ae47523d8ee968272db3f395748ee7c69b234d1f1fa0685ffeaf8720735d8115 libpq-debuginfo-13.23-1.el8_6.1.i686.rpm SHA-256: 0309e8247ff24d74dcbfc8de4b9064e67ae6ae41ed73acbd0c820ec01420a048 libpq-debuginfo-13.23-1.el8_6.1.x86_64.rpm SHA-256: b48f309acedcd547f1bcf8310e59e8898b0d379fb733cde0996c86f2c24fa54e libpq-debugsource-13.23-1.el8_6.1.i686.rpm SHA-256: 1b6e7865ab05dafa0d26f7f85fdd67eb3c69a8246c33c1f65c4d1b08285ce0ce libpq-debugsource-13.23-1.el8_6.1.x86_64.rpm SHA-256: 234652535d6e6b02677312b202fd79fb07288609ab870edb212ea8ddec4bcc1a libpq-devel-13.23-1.el8_6.1.i686.rpm SHA-256: cdc64cf3c0c746ddbaa4f0c34afb835cdc5600725af5e9cc4349924ede495c7d libpq-devel-13.23-1.el8_6.1.x86_64.rpm SHA-256: bb8fdb2ee888e05427ab3843f8e583669993a35776a896d9c9cb8f1c4ff7b4c6 libpq-devel-debuginfo-13.23-1.el8_6.1.i686.rpm SHA-256: e5d22590d0d1de43ef7a349e681ed257ad2f1b442e65592e0ae84317f64b4f16 libpq-devel-debuginfo-13.23-1.el8_6.1.x86_64.rpm SHA-256: 50f093f1868a5b8e17bad6b0cdaa457d620bc9a4d3494b445b7ade2af9630cc2 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .