[Apollo] Advisories Statistics light light Login

RLSA-2023:7785

Security Mirrored from RHSA-2023:7785
Issued at: 2024-01-09
Updated at: 2024-01-09

Synopsis

Important: postgresql:15 security update



Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

* postgresql: Buffer overrun from integer overflow in array modification (CVE-2023-5869)

* postgresql: Memory disclosure in aggregate function calls (CVE-2023-5868)

* postgresql: extension script @substitutions@ within quoting allow SQL injection (CVE-2023-39417)

* postgresql: Role pg_signal_backend can signal certain superuser processes. (CVE-2023-5870)

* postgresql: MERGE fails to enforce UPDATE or SELECT row security policies (CVE-2023-39418)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x

Fixes

2228111 2228112 2247168 2247169 2247170

CVEs

CVE-2023-39417 CVE-2023-39418 CVE-2023-5868 CVE-2023-5869 CVE-2023-5870

Affected packages

Rocky Linux 9 aarch64 - AppStream

pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.aarch64.rpm pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.2.0+14925+a515b28a.aarch64.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.2.0+14925+a515b28a.aarch64.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.aarch64.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.src.rpm pg_repack-debuginfo-0:1.4.8-1.module+el9.2.0+14925+a515b28a.aarch64.rpm pg_repack-debugsource-0:1.4.8-1.module+el9.2.0+14925+a515b28a.aarch64.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.aarch64.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.aarch64.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.aarch64.rpm

Rocky Linux 9 ppc64le - AppStream

pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.src.rpm pg_repack-debuginfo-0:1.4.8-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm pg_repack-debugsource-0:1.4.8-1.module+el9.2.0+14925+a515b28a.ppc64le.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.ppc64le.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.ppc64le.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.ppc64le.rpm

Rocky Linux 9 s390x - AppStream

pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.s390x.rpm pgaudit-0:1.7.0-1.module+el9.2.0+14925+a515b28a.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.2.0+14925+a515b28a.s390x.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.2.0+14925+a515b28a.s390x.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.s390x.rpm pg_repack-0:1.4.8-1.module+el9.2.0+14925+a515b28a.src.rpm pg_repack-debuginfo-0:1.4.8-1.module+el9.2.0+14925+a515b28a.s390x.rpm pg_repack-debugsource-0:1.4.8-1.module+el9.2.0+14925+a515b28a.s390x.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.s390x.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.s390x.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.2.0+14925+a515b28a.s390x.rpm