[Apollo] Advisories Statistics light light Login

RLSA-2024:6020

Security Mirrored from RHSA-2024:6020
Issued at: 2025-05-07
Updated at: 2025-05-07

Synopsis

Important: postgresql:15 security update



Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

* postgresql: PostgreSQL relation replacement during pg_dump executes arbitrary SQL (CVE-2024-7348)

* postgresql: PostgreSQL pg_stats_ext and pg_stats_ext_exprs lack authorization checks (CVE-2024-4317)

For more details about the security issue(s), including the impact, a CVSS

score, acknowledgments, and other related information, refer to the CVE page(s)

listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes

2279935

CVEs

CVE-2024-4317 CVE-2024-7348

Affected packages

Rocky Linux 9 aarch64 - AppStream

pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.aarch64.rpm pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.5.0+30637+4391fcca.aarch64.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.5.0+30637+4391fcca.aarch64.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.aarch64.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.aarch64.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.aarch64.rpm

Rocky Linux 9 ppc64le - AppStream

pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.ppc64le.rpm pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.5.0+30637+4391fcca.ppc64le.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.5.0+30637+4391fcca.ppc64le.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.ppc64le.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.ppc64le.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.ppc64le.rpm

Rocky Linux 9 s390x - AppStream

pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.s390x.rpm pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.src.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.5.0+30637+4391fcca.s390x.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.5.0+30637+4391fcca.s390x.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.s390x.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.src.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.s390x.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.s390x.rpm

Rocky Linux 9 x86_64 - AppStream

pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.src.rpm pgaudit-0:1.7.0-1.module+el9.5.0+30637+4391fcca.x86_64.rpm pgaudit-debuginfo-0:1.7.0-1.module+el9.5.0+30637+4391fcca.x86_64.rpm pgaudit-debugsource-0:1.7.0-1.module+el9.5.0+30637+4391fcca.x86_64.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.src.rpm postgres-decoderbufs-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.x86_64.rpm postgres-decoderbufs-debuginfo-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.x86_64.rpm postgres-decoderbufs-debugsource-0:1.9.7-1.Final.module+el9.5.0+30637+4391fcca.x86_64.rpm