The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 39.2%