Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-4207

16
FAUCET Score

CVE-2025-4207 is a buffer over-read vulnerability in PostgreSQL's GB18030 encoding validation, affecting versions prior to 17.5, 16.9, 15.13, 14.18, and 13.21. This flaw allows an unauthenticated attacker to trigger a temporary denial of service on the database server and libpq, particularly on systems where a 1-byte over-read causes process termination. Rated Medium (CVSS 5.9), the attack requires high complexity but no user interaction. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
N/APostgreSQL
>= 0, < 13.21, >= 14, < 14.18, >= 15, < 15.13, >= 16, < 16.9, >= 17, < 17.5CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 3.1

5.9MEDIUM

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.64%
Probability of exploitation in next 30 days
EPSS Percentile
46.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0064 is in the 8th percentile among its peer group of 19,958 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (33)

beckhoffpatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
dhis2patch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
fortinetpatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
microsoftpatch availablevia msrc
Product: azl3 postgresql 16.7-1 on Azure Linux 3.0Fixed in: 16.9-1
microsoftpatch availablevia msrc
Product: azl3 postgresql 16.9-1 on Azure Linux 3.0Fixed in: 16.9-1
microsoftpatch availablevia msrc
Product: cbl2 postgresql 14.16-1 on CBL Mariner 2.0Fixed in: 14.18-1
microsoftpatch availablevia msrc
Product: cm2 postgresql 14.18-1 on CBL Mariner 2.0Fixed in: 14.18-1
microsoftpatch availablevia msrc
Product: 20964-17084Fixed in: 1.90.0-4
microsoftpatch availablevia msrc
Product: 20865-17084Fixed in: 1.90.0-4
microsoftpatch availablevia msrc
Product: 19262-17084Fixed in: 16.9-1
microsoftpatch availablevia msrc
Product: 19600-17084Fixed in: 16.9-1
microsoftpatch availablevia msrc
Product: 19261-17086Fixed in: 14.18-1
microsoftpatch availablevia msrc
Product: 19555-16823Fixed in: 14.18-1
microsoftpatch availablevia msrc
Product: azl3 rust 1.90.0-4 on Azure Linux 3.0Fixed in: 1.90.0-4
microsoftpatch availablevia msrc
Product: azl3 rust 1.90.0-3 on Azure Linux 3.0Fixed in: 1.90.0-4
microsoftpatch availablevia msrc
Product: 19844-17086Fixed in: 14.18-1
miniopatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
navidromepatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
netscoutpatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
new_relicpatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
nvidiapatch availablevia llm_extracted
Fixed in: 17.5, 16.9, 15.13, 14.18
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: postgresql16-0:16.10-1.el10_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: postgresql:16-8100020250818110346.489197e6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: postgresql:15-9060020250817180313.rhel9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: postgresql:16-9060020250817200213.rhel9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: postgresql:15-8100020250818110305.489197e6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: postgresql:13-8100020250818110147.489197e6
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: libpq
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: postgresql
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: libpq
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: postgresql:12/postgresql
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: libpq
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: postgresql

Vendor Advisories (10)

microsoft2025-May/CVE-2025-4207Moderate

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

May 13, 2025
redhatCVE-2025-4207Moderate

postgresql: PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

May 8, 2025
fortinetllm-fortinet-14477e4fa5afcc2cMEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

Jan 1, 2025
new_relicllm-new_relic-5ef0976ac3d1fff0MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

dhis2llm-dhis2-16c3777fb5090307MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

miniollm-minio-5c0e7a2b76e9186cMEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

navidromellm-navidrome-555472a5abe610c3MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

nvidiallm-nvidia-4fb9a43ebec276d2MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

beckhoffllm-beckhoff-53790566195771f0MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

netscoutllm-netscout-4fbcf19eb9b8bea8MEDIUM

PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation

References

lists.debian.org / debian-lts-announce/2025/05/msg00011.html
openwall.com / lists/oss-security/2025/05/09/3
postgresql.org / support/security/CVE-2025-4207