[Apollo] Advisories Statistics light light Login

RLSA-2023:4535

Security Mirrored from RHSA-2023:4535
Issued at: 2023-10-06
Updated at: 2023-10-06

Synopsis

Moderate: postgresql:12 security update



Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

* postgresql: schema_element defeats protective search_path changes (CVE-2023-2454)

* postgresql: row security policies disregard user ID changes after inlining. (CVE-2023-2455)

* postgresql: Client memory disclosure when connecting with Kerberos to modified server (CVE-2022-41862)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 8 aarch64 Rocky Linux 8 x86_64

Fixes

2165722 2207568 2207569

CVEs

CVE-2022-41862 CVE-2023-2454 CVE-2023-2455

Affected packages

Rocky Linux 8 aarch64 - AppStream

pgaudit-0:1.4.0-5.module+el8.5.0+686+20453ecc.aarch64.rpm pgaudit-0:1.4.0-5.module+el8.5.0+686+20453ecc.src.rpm pgaudit-debuginfo-0:1.4.0-5.module+el8.5.0+686+20453ecc.aarch64.rpm pgaudit-debugsource-0:1.4.0-5.module+el8.5.0+686+20453ecc.aarch64.rpm pg_repack-0:1.4.6-3.module+el8.5.0+684+c3892ef9.aarch64.rpm pg_repack-0:1.4.6-3.module+el8.5.0+684+c3892ef9.src.rpm pg_repack-debuginfo-0:1.4.6-3.module+el8.5.0+684+c3892ef9.aarch64.rpm pg_repack-debugsource-0:1.4.6-3.module+el8.5.0+684+c3892ef9.aarch64.rpm postgres-decoderbufs-0:0.10.0-2.module+el8.5.0+684+c3892ef9.aarch64.rpm postgres-decoderbufs-0:0.10.0-2.module+el8.5.0+684+c3892ef9.src.rpm postgres-decoderbufs-debuginfo-0:0.10.0-2.module+el8.5.0+684+c3892ef9.aarch64.rpm postgres-decoderbufs-debugsource-0:0.10.0-2.module+el8.5.0+684+c3892ef9.aarch64.rpm postgresql-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-0:12.15-1.module+el8.8.0+1441+a10239d2.src.rpm postgresql-contrib-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-contrib-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-debugsource-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-docs-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-docs-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-plperl-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-plperl-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-plpython3-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-plpython3-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-pltcl-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-pltcl-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-server-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-server-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-server-devel-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-server-devel-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-static-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-test-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-test-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-test-rpm-macros-0:12.15-1.module+el8.8.0+1441+a10239d2.noarch.rpm postgresql-upgrade-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-upgrade-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-upgrade-devel-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm postgresql-upgrade-devel-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.aarch64.rpm

Rocky Linux 8 x86_64 - AppStream

pgaudit-0:1.4.0-5.module+el8.5.0+686+20453ecc.src.rpm pgaudit-0:1.4.0-5.module+el8.5.0+686+20453ecc.x86_64.rpm pgaudit-debuginfo-0:1.4.0-5.module+el8.5.0+686+20453ecc.x86_64.rpm pgaudit-debugsource-0:1.4.0-5.module+el8.5.0+686+20453ecc.x86_64.rpm pg_repack-0:1.4.6-3.module+el8.5.0+684+c3892ef9.src.rpm pg_repack-0:1.4.6-3.module+el8.5.0+684+c3892ef9.x86_64.rpm pg_repack-debuginfo-0:1.4.6-3.module+el8.5.0+684+c3892ef9.x86_64.rpm pg_repack-debugsource-0:1.4.6-3.module+el8.5.0+684+c3892ef9.x86_64.rpm postgres-decoderbufs-0:0.10.0-2.module+el8.5.0+684+c3892ef9.src.rpm postgres-decoderbufs-0:0.10.0-2.module+el8.5.0+684+c3892ef9.x86_64.rpm postgres-decoderbufs-debuginfo-0:0.10.0-2.module+el8.5.0+684+c3892ef9.x86_64.rpm postgres-decoderbufs-debugsource-0:0.10.0-2.module+el8.5.0+684+c3892ef9.x86_64.rpm postgresql-0:12.15-1.module+el8.8.0+1441+a10239d2.src.rpm postgresql-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-contrib-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-contrib-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-debugsource-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-docs-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-docs-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-plperl-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-plperl-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-plpython3-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-plpython3-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-pltcl-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-pltcl-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-server-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-server-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-server-devel-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-server-devel-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-static-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-test-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-test-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-test-rpm-macros-0:12.15-1.module+el8.8.0+1441+a10239d2.noarch.rpm postgresql-upgrade-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-upgrade-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-upgrade-devel-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm postgresql-upgrade-devel-debuginfo-0:12.15-1.module+el8.8.0+1441+a10239d2.x86_64.rpm