{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/address_standardizer--3.7.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-73514"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["address_standardizer (\u003c= 3.7.0)"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["PostGIS"],"content_html":"\u003cp\u003eThe address_standardizer extension for PostGIS, commonly used for parsing and standardizing address data, contains an out-of-bounds write vulnerability identified as CVE-2026-73514. The vulnerability exists in all versions up to and including 3.7.0 and is addressed in commit 423570b. The issue arises when the \u003ccode\u003estandardize_address()\u003c/code\u003e function processes a caller-supplied rules table.\u003c/p\u003e\n\u003cp\u003eAn attacker with authenticated access to the database - specifically one who can create or modify tables used as rules by the extension - can supply a 'Type' value that exceeds the intended fixed range. The extension fails to perform bounds checking on this value before using it as an index into an internal output-link table. This results in an out-of-bounds memory write, which can be leveraged to corrupt memory, cause a denial-of-service (crash), or potentially achieve arbitrary code execution within the database process context. This vulnerability is particularly relevant to environments where low-privileged users are granted the ability to create database objects or manipulate data used by administrative extensions.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows an authenticated attacker to compromise the integrity of the database process memory. This can lead to service instability, database crashes, or potential escalation of privileges via code execution. The scope of impact is limited to database users with sufficient permissions to manipulate tables passed to the \u003ccode\u003estandardize_address()\u003c/code\u003e function.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eUpgrade the PostGIS address_standardizer extension to a version containing the fix implemented in commit 423570b.\u003c/li\u003e\n\u003cli\u003eAudit database permissions to identify users with the ability to create or modify tables that are utilized as input for the \u003ccode\u003estandardize_address()\u003c/code\u003e function.\u003c/li\u003e\n\u003cli\u003eImplement strict access controls on the PostGIS extension functions to ensure only trusted users can invoke \u003ccode\u003estandardize_address()\u003c/code\u003e with custom-defined rules tables.\u003c/li\u003e\n\u003cli\u003eMonitor database logs for repeated errors or unexpected restarts of the PostgreSQL service, which may indicate crash attempts associated with exploitation of this vulnerability.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-08-13T16:56:52Z","date_published":"2026-08-13T16:56:52Z","id":"https://feed.craftedsignal.io/briefs/2026-08-postgis-oob-write/","summary":"The PostGIS address_standardizer extension through version 3.7.0 is vulnerable to an out-of-bounds write allowing database users to trigger memory corruption and potential code execution.","title":"CVE-2026-73514: Out-of-Bounds Write in PostGIS address_standardizer","url":"https://feed.craftedsignal.io/briefs/2026-08-postgis-oob-write/"}],"language":"en","title":"CraftedSignal Threat Feed - Address_standardizer (\u003c= 3.7.0)","version":"https://jsonfeed.org/version/1.1"}