CVE-2026-3172

Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.
Configurations

No configuration.

History

27 Feb 2026, 14:06

Type Values Removed Values Added
Summary
  • (es) Desbordamiento de búfer en la construcción paralela de índices HNSW en pgvector 0.6.0 hasta 0.8.1 permite a un usuario de base de datos filtrar datos sensibles de otras relaciones o bloquear el servidor de la base de datos.

25 Feb 2026, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-25 21:16

Updated : 2026-02-27 14:06


NVD link : CVE-2026-3172

Mitre link : CVE-2026-3172

CVE.ORG link : CVE-2026-3172


JSON object : View

Products Affected

No product.

CWE
CWE-191

Integer Underflow (Wrap or Wraparound)

CWE-787

Out-of-bounds Write