BIT-pgbouncer-2026-6665

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/pgbouncer/BIT-pgbouncer-2026-6665.json
JSON Data
https://api.osv.dev/v1/vulns/BIT-pgbouncer-2026-6665
Aliases
  • CVE-2026-6665
Published
2026-05-12T08:52:51.850Z
Modified
2026-05-15T11:00:09.950192Z
Summary
PgBouncer buffer overflow in SCRAM
Details

The SCRAM code in PgBouncer before 1.25.2 did not check the return value of strlcat() correctly when building the contents of the SCRAM client-final-message. A malicious backend that sends a SCRAM server-final-message with a long nonce can trigger a stack overflow.

Database specific
{
    "cpes": [
        "cpe:2.3:a:pgbouncer:pgbouncer:*:*:*:*:*:*:*:*"
    ],
    "severity": "Critical"
}
References

Affected packages

Bitnami / pgbouncer

Package

Name
pgbouncer
Purl
pkg:bitnami/pgbouncer

Severity

  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.2

Database specific

source
"https://github.com/bitnami/vulndb/tree/main/data/pgbouncer/BIT-pgbouncer-2026-6665.json"