CVE-2026-14668: Access of Resource Using Incompatible Type ('Type Confusion') in PostgreSQL
CVE-2026-14668 is a type confusion vulnerability in PostgreSQL's ctid data type selectivity estimator. It allows an object creator to view a calculation derived from an arbitrary 4-byte memory span by providing a non-ctid input. This results in partial memory value disclosure with some loss of precision. The vulnerability affects PostgreSQL versions before 18.5, 17.11, 16.15, 15.19, and 14.24.
AI Analysis
Technical Summary
This vulnerability involves type confusion in the input handling of the ctid data type selectivity estimator in PostgreSQL. An attacker with object creation privileges can supply a non-ctid input to cause the system to perform a calculation on an arbitrary 4-byte memory segment. Although the calculation loses precision, it can still reveal substantial memory values. The flaw affects multiple major PostgreSQL versions prior to their respective patch releases 18.5, 17.11, 16.15, 15.19, and 14.24. No official remediation level or patch links are provided in the data, so patch status is not confirmed.
Potential Impact
The vulnerability allows an attacker with object creation privileges to access memory content indirectly via a type confusion bug. This can lead to partial disclosure of memory values, potentially exposing sensitive information. The CVSS score of 8.1 indicates a high severity impact with network attack vector, low attack complexity, and no user interaction required. The impact includes high confidentiality loss and high availability impact, but no integrity impact is indicated.
Mitigation Recommendations
Patch status is not yet confirmed — check the official PostgreSQL vendor advisory for current remediation guidance. Until patches are confirmed and applied, limit object creation privileges to trusted users only to reduce risk.
CVE-2026-14668: Access of Resource Using Incompatible Type ('Type Confusion') in PostgreSQL
Description
CVE-2026-14668 is a type confusion vulnerability in PostgreSQL's ctid data type selectivity estimator. It allows an object creator to view a calculation derived from an arbitrary 4-byte memory span by providing a non-ctid input. This results in partial memory value disclosure with some loss of precision. The vulnerability affects PostgreSQL versions before 18.5, 17.11, 16.15, 15.19, and 14.24.
CVSS v3.1
Score 8.1high
Affected software
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability involves type confusion in the input handling of the ctid data type selectivity estimator in PostgreSQL. An attacker with object creation privileges can supply a non-ctid input to cause the system to perform a calculation on an arbitrary 4-byte memory segment. Although the calculation loses precision, it can still reveal substantial memory values. The flaw affects multiple major PostgreSQL versions prior to their respective patch releases 18.5, 17.11, 16.15, 15.19, and 14.24. No official remediation level or patch links are provided in the data, so patch status is not confirmed.
Potential Impact
The vulnerability allows an attacker with object creation privileges to access memory content indirectly via a type confusion bug. This can lead to partial disclosure of memory values, potentially exposing sensitive information. The CVSS score of 8.1 indicates a high severity impact with network attack vector, low attack complexity, and no user interaction required. The impact includes high confidentiality loss and high availability impact, but no integrity impact is indicated.
Mitigation Recommendations
Patch status is not yet confirmed — check the official PostgreSQL vendor advisory for current remediation guidance. Until patches are confirmed and applied, limit object creation privileges to trusted users only to reduce risk.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- PostgreSQL
- Date Reserved
- 2026-07-03T20:28:11.432Z
- Cvss Version
- 3.1
- State
- PUBLISHED
- Remediation Level
- null
Threat ID: 6a7dc615bf8831d5393e5285
Added to database: 08/13/2026, 13:26:45 UTC
Last enriched: 08/13/2026, 13:46:06 UTC
Last updated: 08/13/2026, 14:25:00 UTC
Views: 4
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.