STIGQter STIGQter: STIG Summary: Crunchy Data Postgres 16 Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

When updates are applied to the PostgreSQL software, any software components that have been replaced or made unnecessary must be removed.

DISA Rule

SV-261935r1000810_rule

Vulnerability Number

V-261935

Group Title

SRG-APP-000454-DB-000389

Rule Version

CD16-00-009100

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Use package managers (RPM or apt-get) for installing PostgreSQL. Unused software is removed when updated.

Check Contents

To check software installed by packages, as the system administrator, run the following command:

$ sudo rpm -qa | grep postgres

If multiple versions of postgres are installed but are unused, this is a finding.

Vulnerability Number

V-261935

Documentable

False

Rule Version

CD16-00-009100

Severity Override Guidance

To check software installed by packages, as the system administrator, run the following command:

$ sudo rpm -qa | grep postgres

If multiple versions of postgres are installed but are unused, this is a finding.

Check Content Reference

M

Target Key

5598