What is CVE-2026-73515?
CVE-2026-73515 is an out-of-bounds read vulnerability in PostGIS versions before 3.7.0beta2, triggered via a malformed FlatGeobuf buffer. This can allow attackers to cause memory disclosure or a server crash, requiring an update to the latest patched release.
Azərbaycanca: CVE-2026-73515: PostGIS-in 3.7.0beta2-dən əvvəlki versiyalarında, FlatGeobuf buferi vasitəsilə yaddaş oxuma (out-of-bounds read) zəifliyi aşkar edilib. Bu, hücumçuya məlumat sızması və ya serverin çökməsinə səbəb ola bilər, ona görə də sistem administratorları ən son versiyaya yenilənmə aparmalıdır.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
Through which component of PostGIS can CVE-2026-73515 be exploited?
The vulnerability can be triggered via a malformed FlatGeobuf buffer.
What measure should be taken to mitigate CVE-2026-73515?
An update to PostGIS version 3.7.0beta2 or a newer patched release should be applied.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.