CVE-2026-92870: Buffer Overflow
Published Sep 30, 2026
·Updated
A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.
Affected Software
1 affected component
Pgpool Pgpool-II
Event History
Sep 30, 2026
CVE Published
via MITRE·07:21 AM
Data Sourced
via MITRE·07:21 AM
DescriptionSeverity
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The vulnerability is remotely exploitable without authentication or user interaction. The supplied severity vector indicates low attack complexity over the network.
2
What is the expected impact if exploitation succeeds?
Successful exploitation may cause abnormal Pgpool-II process termination, resulting in an availability impact. The provided vector indicates no confidentiality or integrity impact.