AWS AmazonRDS: Fix GRANT SET ON PARAMETER permission vulnerability in Aurora PostgreSQL
Summary
Added release notes for multiple Aurora PostgreSQL versions (17.5.6, 16.9.6, 15.13.6, 14.18.6) including a security fix for incorrect permission granting on non-existent parameters.
Security assessment
The evidence line explicitly describes a fix for an authorization flaw where permissions could be granted for non-existent parameters, which could enable privilege escalation attacks.
Evidence
* Fixed an issue where GRANT SET ON PARAMETER incorrectly allowed permissions to be granted for non-existent extension parameters.
Diff
diff --git a/AmazonRDS/latest/AuroraPostgreSQLReleaseNotes/AuroraPostgreSQL.Updates.md b/AmazonRDS/latest/AuroraPostgreSQLReleaseNotes/AuroraPostgreSQL.Updates.md index 3d55e05e8..3f70f3814 100644 --- a//AmazonRDS/latest/AuroraPostgreSQLReleaseNotes/AuroraPostgreSQL.Updates.md +++ b//AmazonRDS/latest/AuroraPostgreSQLReleaseNotes/AuroraPostgreSQL.Updates.md @@ -943,0 +944,2 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 17.5. For more i + * Aurora PostgreSQL 17.5.6, July 29, 2026 + @@ -958,0 +961,18 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 17.5. For more i +#### Aurora PostgreSQL 17.5.6, July 29, 2026 + +**Critical stability enhancements** + + * Fixed an issue in Babelfish where table-valued parameters would store only the last row N times, where N is the total number of rows provided. + + * Fixed an issue that improves B-tree prefetch performance when index scans were not properly utilizing prefetch buffers. + + + + +**General enhancements** + + * Fixed an issue where GRANT SET ON PARAMETER incorrectly allowed permissions to be granted for non-existent extension parameters. + + + + @@ -2414,0 +2435,2 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 16.9. For more i + * Aurora PostgreSQL 16.9.6, July 29, 2026 + @@ -2429,0 +2452,18 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 16.9. For more i +#### Aurora PostgreSQL 16.9.6, July 29, 2026 + +**Critical stability enhancements** + + * Fixed an issue in Babelfish where table-valued parameters would store only the last row N times, where N is the total number of rows provided. + + * Fixed an issue that improves B-tree prefetch performance when index scans were not properly utilizing prefetch buffers. + + + + +**General enhancements** + + * Fixed an issue where GRANT SET ON PARAMETER incorrectly allowed permissions to be granted for non-existent extension parameters. + + + + @@ -5056,0 +5097,2 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 15.13. For more + * Aurora PostgreSQL 15.13.6, July 29, 2026 + @@ -5071,0 +5114,18 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 15.13. For more +#### Aurora PostgreSQL 15.13.6, July 29, 2026 + +**Critical stability enhancements** + + * Fixed an issue in Babelfish where table-valued parameters would store only the last row N times, where N is the total number of rows provided. + + * Fixed an issue that improves B-tree prefetch performance when index scans were not properly utilizing prefetch buffers. + + + + +**General enhancements** + + * Fixed an issue where GRANT SET ON PARAMETER incorrectly allowed permissions to be granted for non-existent extension parameters. + + + + @@ -8689,0 +8750,2 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 14.18. For more + * Aurora PostgreSQL 14.18.6, July 29, 2026 + @@ -8704,0 +8767,18 @@ This release of Aurora PostgreSQL is compatible with PostgreSQL 14.18. For more +#### Aurora PostgreSQL 14.18.6, July 29, 2026 + +**Critical stability enhancements** + + * Fixed an issue in Babelfish where table-valued parameters would store only the last row N times, where N is the total number of rows provided. + + * Fixed an issue that improves B-tree prefetch performance when index scans were not properly utilizing prefetch buffers. + + + + +**General enhancements** + + * Fixed an issue where GRANT SET ON PARAMETER incorrectly allowed permissions to be granted for non-existent extension parameters. + + + +