Alerts This Week
Warning Icon 1 1,179
Alerts This Week
Warning Icon 1 1,179

Debian: pgpool-II Major Authentication Flaw & Data Leak DSA-5980-2

debian
Calendar Grey August 13, 2025
Debian Logo
Recent vulnerabilities identified in pgpool2 may lead to unauthorized access and potential data leakage. Immediate upgrade is advised.
Two security issues were found in pgpool-II, the connection pool server and replication proxy for PostgreSQL, which could result in authentication bypass and exposure of sensitive ...

Summary

For the oldstable distribution (bookworm), these problems have been fixed
in version 4.3.5-1+deb12u1.

We recommend that you upgrade your pgpool2 packages.

For the detailed security status of pgpool2 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/pgpool2

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: pgpool2
CVE ID: CVE-2024-45624 CVE-2025-46801

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here