PostgreSQL
postgresql-14, postgresql-16, postgresql-18 vulnerabilities
Corregida en Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
Seguimos 8 versiones de PostgreSQL: 5 con soporte vigente y 3 fuera de soporte. La más reciente es la 18, publicada el 25 de septiembre de 2025. La primera en quedarse sin parches es la 14, el 12 de noviembre de 2026.
Actualizado el 2026-08-26.
| Versión | Lanzamiento | Fin de soporte | Soporte extendido | Estado |
|---|---|---|---|---|
| 18 | 25 de septiembre de 2025 | 14 de noviembre de 2030 | — | Soportada |
| 17 | 26 de septiembre de 2024 | 8 de noviembre de 2029 | — | Soportada |
| 16 | 14 de septiembre de 2023 | 9 de noviembre de 2028 | — | Soportada |
| 15 | 13 de octubre de 2022 | 11 de noviembre de 2027 | — | Soportada |
| 14 | 30 de septiembre de 2021 | 12 de noviembre de 2026 | — | Menos de seis meses |
| 13 | 24 de septiembre de 2020 | 13 de noviembre de 2025 | — | Fin de soporte |
| 12 | 3 de octubre de 2019 | 21 de noviembre de 2024 | — | Fin de soporte |
| 11 | 18 de octubre de 2018 | 9 de noviembre de 2023 | — | Fin de soporte |
Seguimos 29 avisos que afectan a PostgreSQL.
PostgreSQL
postgresql-14, postgresql-16, postgresql-18 vulnerabilities
Corregida en Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
PostgreSQL
Integer wraparound in PostgreSQL tsvector and tsquery data type functions allows an unprivileged database user to cause the server to undersize an allocation and write out-of-bounds, via crafted…
Corregida en Debian 12, Debian 13, Debian 14, Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
PostgreSQL
Cleartext storage in PostgreSQL pgcrypto disabled ciphers allows a user to recover cleartext, via direct observation of the faulty ciphertext. The OpenSSL version and OpenSSL configuration determine…
Corregida en Debian 12, Debian 13, Debian 14, Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
PostgreSQL
Heap buffer overflow in PostgreSQL regexp allows the query author to execute arbitrary code as the operating system user running the database, via text that would not pass encoding validation. This…
Corregida en Debian 12, Debian 13, Debian 14, Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
PostgreSQL
Incomplete tracking in PostgreSQL of changes to role membership, role attributes, and database ownership allows a query to continue using cached row-level security policies after those changes…
Corregida en Debian 12, Debian 13, Debian 14, Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
PostgreSQL
Type confusion regarding input of PostgreSQL ctid data type selectivity estimator allows an object creator to view a calculation derived from the value of an arbitrary 4-byte span of memory, via a…
Corregida en Debian 12, Debian 13, Debian 14, Ubuntu 22.04, Ubuntu 24.04 y Ubuntu 26.04.
Saber la fecha es la parte fácil. Planificar el salto de versión sin cortar el servicio es lo que hacemos.
Ver serviciosFechas de endoflife.date, publicadas bajo licencia CC BY 4.0. Esta ficha se genera automáticamente y no sustituye al calendario oficial del proyecto; así se elabora la lista.
Estas son las fechas del proyecto original. Debian, Ubuntu y RHEL congelan una versión al publicar cada release y le retroportan los parches de seguridad durante todo el ciclo de la distribución, así que un paquete que aquí figura fuera de soporte puede seguir recibiendo correcciones por la vía de tu distribución. Lo que manda entonces es el calendario de la distribución.
Soporte Linux y DevOps en español