Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2023:7884

Опубликовано: 03 фев. 2026
Источник: rocky
Оценка: Important

Описание

Important: postgresql:15 security update

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: Buffer overrun from integer overflow in array modification (CVE-2023-5869)

  • postgresql: Memory disclosure in aggregate function calls (CVE-2023-5868)

  • postgresql: extension script @substitutions@ within quoting allow SQL injection (CVE-2023-39417)

  • postgresql: Role pg_signal_backend can signal certain superuser processes. (CVE-2023-5870)

  • postgresql: MERGE fails to enforce UPDATE or SELECT row security policies (CVE-2023-39418)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
pgauditx86_641.module+el8.10.0+40056+df351139pgaudit-1.7.0-1.module+el8.10.0+40056+df351139.x86_64.rpm
pg_repackx86_641.module+el8.10.0+40056+df351139pg_repack-1.4.8-1.module+el8.10.0+40056+df351139.x86_64.rpm
postgres-decoderbufsx86_641.Final.module+el8.10.0+40056+df351139postgres-decoderbufs-1.9.7-1.Final.module+el8.10.0+40056+df351139.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
около 2 лет назад

Important: postgresql:15 security update

oracle-oval
больше 2 лет назад

ELSA-2023-7884: postgresql:15 security update (IMPORTANT)

oracle-oval
больше 2 лет назад

ELSA-2023-7785: postgresql:15 security update (IMPORTANT)

rocky
около 2 лет назад

Important: postgresql:12 security update

rocky
больше 2 лет назад

Important: postgresql:13 security update