{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-3172",
        "tracking": {
            "current_release_date": "2026-03-27T20:40:56.727406Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-3172",
            "initial_release_date": "2026-02-25T21:26:50.515520Z",
            "revision_history": [
                {
                    "date": "2026-02-25T21:26:50.515520Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (1).| CWES updated (1)."
                },
                {
                    "date": "2026-02-25T21:26:53.131870Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-02-25T21:39:57.761840Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (1).| CWES updated (1)."
                },
                {
                    "date": "2026-02-25T21:39:59.910648Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T12:43:58.714566Z",
                    "number": "5",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source."
                },
                {
                    "date": "2026-02-26T14:12:55.217177Z",
                    "number": "6",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-02-26T15:45:17.445632Z",
                    "number": "7",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-02-27T12:11:05.751404Z",
                    "number": "8",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (10).| References created (1)."
                },
                {
                    "date": "2026-02-27T12:11:08.706487Z",
                    "number": "9",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-28T00:28:02.169247Z",
                    "number": "10",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (6).| Product Identifiers created (4).| Products created (3).| References created (3).| CWES updated (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-28T00:28:04.503334Z",
                    "number": "11",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-28T12:32:29.432229Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T09:32:56.102151Z",
                    "number": "13",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-27T19:46:38.498854Z",
                    "number": "14",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products created (19).| References created (3)."
                }
            ],
            "status": "interim",
            "version": "14"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/unknown",
                                "product": {
                                    "name": "vers:rpm/unknown",
                                    "product_id": "CSAFPID-2524222",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:openshift_lightspeed"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "OpenShift Lightspeed"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/10",
                                "product": {
                                    "name": "vers:rpm/10",
                                    "product_id": "CSAFPID-2858634",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:10"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/9",
                                "product": {
                                    "name": "vers:rpm/9",
                                    "product_id": "CSAFPID-1439319",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:9"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/2",
                                "product": {
                                    "name": "vers:rpm/2",
                                    "product_id": "CSAFPID-2878788",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:trusted_profile_analyzer:2"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Trusted Profile Analyzer"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5222641"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "lightspeed-ocp-rag-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "OpenShift Lightspeed"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5736863"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5736861"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql16-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5736862"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql18-pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1832822"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "rhtpa-trustification-service-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Trusted Profile Analyzer"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943919"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943921"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql16-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943922"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql17-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943923"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql18-pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Enterprise Module for Server Applications 15 SP7"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943924"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943927"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql16-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943929"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql17-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943930"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql18-pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Enterprise Server 15 SP6-LTSS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943931"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943934"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql16-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943935"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql17-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943936"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql18-pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Enterprise Server for SAP Applications 15 SP6"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943937"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943939"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql13-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943942"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql14-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943945"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql15-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943947"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql16-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943951"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql17-pgvector"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<0.8.2-150600.13.9.1",
                                            "product_id": "CSAFPID-5943953"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "postgresql18-pgvector"
                            }
                        ],
                        "category": "product_family",
                        "name": "openSUSE:Leap 15.6"
                    }
                ],
                "category": "vendor",
                "name": "SUSE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.6.0",
                                "product": {
                                    "name": "vers:unknown/v0.6.0",
                                    "product_id": "CSAFPID-5735038"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.6.1",
                                "product": {
                                    "name": "vers:unknown/v0.6.1",
                                    "product_id": "CSAFPID-5735039"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.6.2",
                                "product": {
                                    "name": "vers:unknown/v0.6.2",
                                    "product_id": "CSAFPID-5735040"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.7.0",
                                "product": {
                                    "name": "vers:unknown/v0.7.0",
                                    "product_id": "CSAFPID-5735041"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.7.1",
                                "product": {
                                    "name": "vers:unknown/v0.7.1",
                                    "product_id": "CSAFPID-5735042"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.7.2",
                                "product": {
                                    "name": "vers:unknown/v0.7.2",
                                    "product_id": "CSAFPID-5735043"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.7.3",
                                "product": {
                                    "name": "vers:unknown/v0.7.3",
                                    "product_id": "CSAFPID-5735044"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.7.4",
                                "product": {
                                    "name": "vers:unknown/v0.7.4",
                                    "product_id": "CSAFPID-5735045"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.8.0",
                                "product": {
                                    "name": "vers:unknown/v0.8.0",
                                    "product_id": "CSAFPID-5735046"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.8.1",
                                "product": {
                                    "name": "vers:unknown/v0.8.1",
                                    "product_id": "CSAFPID-5735047"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "pgvector"
                    }
                ],
                "category": "vendor",
                "name": "pgvector"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-3172",
            "cwe": {
                "id": "CWE-191",
                "name": "Integer Underflow (Wrap or Wraparound)"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-3172"
                },
                {
                    "category": "description",
                    "text": "Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-3172"
                },
                {
                    "category": "description",
                    "text": "Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.",
                    "title": "debian - https://security-tracker.debian.org/tracker/CVE-2026-3172"
                },
                {
                    "category": "description",
                    "text": "Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-3172.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.\nA buffer overflow during parallel HNSW index builds can be exploited by a database user, potentially leading to information disclosure from other database relations or a denial of service by crashing the database server, although the high impact on availability and confidentiality Red Hat Product Security team has rated this as having a moderate severity. This happens because, besides the low privileges required, to successfully exploit this flaw the attack needs to win a race condition among several worker threads which may be a task considered of a high complexity.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-3172"
                },
                {
                    "category": "description",
                    "text": "This update for pgvector fixes the following issue:\n\nUpdate to pgvector 0.8.2:\n\n- CVE-2026-3172: Buffer overflow in parallel HNSW index build (bsc#1258945).\n\nChangelog:\n\n * Fixed Index Searches in EXPLAIN output for Postgres 18\n",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:1068-1.json?alt=media"
                },
                {
                    "category": "other",
                    "text": "0.00047",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "3.7",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is cwe data available from source Nvd",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 2\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-5735038",
                    "CSAFPID-5735039",
                    "CSAFPID-5735040",
                    "CSAFPID-5735041",
                    "CSAFPID-5735042",
                    "CSAFPID-5735043",
                    "CSAFPID-5735044",
                    "CSAFPID-5735045",
                    "CSAFPID-5735046",
                    "CSAFPID-5735047",
                    "CSAFPID-1439319",
                    "CSAFPID-1832822",
                    "CSAFPID-2524222",
                    "CSAFPID-2858634",
                    "CSAFPID-2878788",
                    "CSAFPID-5222641",
                    "CSAFPID-5736861",
                    "CSAFPID-5736862",
                    "CSAFPID-5736863",
                    "CSAFPID-5943919",
                    "CSAFPID-5943921",
                    "CSAFPID-5943922",
                    "CSAFPID-5943923",
                    "CSAFPID-5943924",
                    "CSAFPID-5943927",
                    "CSAFPID-5943929",
                    "CSAFPID-5943930",
                    "CSAFPID-5943931",
                    "CSAFPID-5943934",
                    "CSAFPID-5943935",
                    "CSAFPID-5943936",
                    "CSAFPID-5943937",
                    "CSAFPID-5943939",
                    "CSAFPID-5943942",
                    "CSAFPID-5943945",
                    "CSAFPID-5943947",
                    "CSAFPID-5943951",
                    "CSAFPID-5943953"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/3xxx/CVE-2026-3172.json"
                },
                {
                    "category": "external",
                    "summary": "Source - debian",
                    "url": "https://security-tracker.debian.org/tracker/CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-3172.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-3172.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:1068-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd; osv; redhat",
                    "url": "https://github.com/pgvector/pgvector/issues/959"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3172"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/support/update/announcement/2026/suse-su-20261068-1/"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://bugzilla.suse.com/1258945"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/security/cve/CVE-2026-3172"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1439319",
                        "CSAFPID-1832822",
                        "CSAFPID-2524222",
                        "CSAFPID-2858634",
                        "CSAFPID-2878788",
                        "CSAFPID-5222641",
                        "CSAFPID-5735038",
                        "CSAFPID-5735039",
                        "CSAFPID-5735040",
                        "CSAFPID-5735041",
                        "CSAFPID-5735042",
                        "CSAFPID-5735043",
                        "CSAFPID-5735044",
                        "CSAFPID-5735045",
                        "CSAFPID-5735046",
                        "CSAFPID-5735047",
                        "CSAFPID-5736861",
                        "CSAFPID-5736862",
                        "CSAFPID-5736863",
                        "CSAFPID-5943919",
                        "CSAFPID-5943921",
                        "CSAFPID-5943922",
                        "CSAFPID-5943923",
                        "CSAFPID-5943924",
                        "CSAFPID-5943927",
                        "CSAFPID-5943929",
                        "CSAFPID-5943930",
                        "CSAFPID-5943931",
                        "CSAFPID-5943934",
                        "CSAFPID-5943935",
                        "CSAFPID-5943936",
                        "CSAFPID-5943937",
                        "CSAFPID-5943939",
                        "CSAFPID-5943942",
                        "CSAFPID-5943945",
                        "CSAFPID-5943947",
                        "CSAFPID-5943951",
                        "CSAFPID-5943953"
                    ]
                }
            ],
            "title": "CVE-2026-3172"
        }
    ]
}