A vulnerability, which was classified as problematic, has been found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. The affected element is an unknown function of the component ECPG. Performing a manipulation of the argument bytea results in integer underflow.

This vulnerability is cataloged as CVE-2026-16241. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.