Revision Date: | 2020-12-04 | Version: | 1 |
Title: | Security update for postgresql12 (Important) |
Description: |
This update for postgresql12 fixes the following issues:
Upgrade to version 12.5:
CVE-2020-25695, bsc#1178666: Block DECLARE CURSOR ... WITH HOLD and firing of deferred triggers within index expressions and materialized view queries. * CVE-2020-25694, bsc#1178667: a) Fix usage of complex connection-string parameters in pg_dump, pg_restore, clusterdb, reindexdb, and vacuumdb. b) When psql's \connect command re-uses connection parameters, ensure that all non-overridden parameters from a previous connection string are re-used. * CVE-2020-25696, bsc#1178668: Prevent psql's \gset command from modifying specially-treated variables. * Fix recently-added timetz test case so it works when the USA is not observing daylight savings time. (obsoletes postgresql-timetz.patch) * https://www.postgresql.org/about/news/2111/ * https://www.postgresql.org/docs/12/release-12-5.html
The previous postgresql12 update already addressed:
Update to 12.4:
CVE-2020-14349, bsc#1175193: Set a secure search_path in logical replication walsenders and apply workers * CVE-2020-14350, bsc#1175194: Make contrib modules' installation scripts more secure.
https://www.postgresql.org/docs/12/release-12-4.html
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1027282 1041090 1042670 1068664 1073269 1073748 1076530 1078326 1078485 1079300 1081750 1081947 1082293 1083507 1084650 1085196 1086001 1088004 1088009 1096368 1105606 1106214 1106699 1109847 1111793 1113755 1121197 1122191 1122417 1125433 1125886 1127701 1129346 1130840 1130847 1135534 1135708 1136981 1136986 1136992 1137930 1138459 1141113 1141853 1143650 1149792 1149955 1153238 1153830 1159035 1159670 1159819 1169746 1170643 1171978 1175193 1175194 1175987 1176024 1176294 1176397 1177867 1177950 1178319 1178361 1178362 1178591 1178666 1178667 1178668 214983 298378 346490 353876 367853 379534 380942 399190 406051 425138 426563 430761 432677 436966 437293 441088 462375 525295 534721 551715 572673 577032 581765 603255 617751 637176 638233 658604 673071 682554 697251 707667 718009 747125 747794 751718 754447 766778 794139 804978 827982 831442 834601 836739 856835 856836 857470 863741 885882 898572 901715 935856 945401 964182 984751 985177 985348 989523 997436 CVE-2007-2052 CVE-2008-1721 CVE-2008-2315 CVE-2008-2316 CVE-2008-3142 CVE-2008-3143 CVE-2008-3144 CVE-2009-0035 CVE-2009-0758 CVE-2009-1885 CVE-2010-1205 CVE-2010-2244 CVE-2011-1002 CVE-2011-1521 CVE-2011-2501 CVE-2011-3026 CVE-2011-3045 CVE-2011-3048 CVE-2011-3389 CVE-2011-4944 CVE-2012-0845 CVE-2012-0862 CVE-2012-1150 CVE-2012-3386 CVE-2013-1752 CVE-2013-1753 CVE-2013-4238 CVE-2013-4342 CVE-2013-7353 CVE-2013-7354 CVE-2014-1912 CVE-2014-4650 CVE-2014-7185 CVE-2014-8169 CVE-2015-0252 CVE-2015-3223 CVE-2015-5330 CVE-2016-0772 CVE-2016-1000110 CVE-2016-5636 CVE-2016-5699 CVE-2017-1000158 CVE-2017-15134 CVE-2017-15135 CVE-2017-18207 CVE-2018-1000030 CVE-2018-1000802 CVE-2018-1060 CVE-2018-1061 CVE-2018-10850 CVE-2018-10935 CVE-2018-14624 CVE-2018-14647 CVE-2018-20852 CVE-2019-10160 CVE-2019-12447 CVE-2019-12448 CVE-2019-12449 CVE-2019-12795 CVE-2019-14275 CVE-2019-16056 CVE-2019-16935 CVE-2019-17006 CVE-2019-5010 CVE-2019-9636 CVE-2019-9947 CVE-2019-9948 CVE-2020-12399 CVE-2020-14349 CVE-2020-14350 CVE-2020-16846 CVE-2020-17490 CVE-2020-25592 CVE-2020-25694 CVE-2020-25695 CVE-2020-25696 CVE-2020-28368 CVE-2020-3899 SUSE-SU-2019:1207-1 SUSE-SU-2019:1717-1 SUSE-SU-2019:2307-1 SUSE-SU-2020:0234-1 SUSE-SU-2020:1198-1 SUSE-SU-2020:1677-1 SUSE-SU-2020:2951-1 SUSE-SU-2020:3155-1 SUSE-SU-2020:3630-1
|
Platform(s): | openSUSE Leap 15.0 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Module for Server Applications 15 SUSE Linux Enterprise Module for Server Applications 15 SP1 SUSE Linux Enterprise Module for Server Applications 15 SP2 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud Crowbar 9
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
PackageKit-1.1.10-lp150.2 is installed
OR PackageKit-backend-zypp-1.1.10-lp150.2 is installed
OR PackageKit-gstreamer-plugin-1.1.10-lp150.2 is installed
OR PackageKit-gtk3-module-1.1.10-lp150.2 is installed
OR PackageKit-lang-1.1.10-lp150.2 is installed
OR libpackagekit-glib2-18-1.1.10-lp150.2 is installed
OR typelib-1_0-PackageKitGlib-1_0-1.1.10-lp150.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
krb5-1.6.3-133.49.68 is installed
OR krb5-32bit-1.6.3-133.49.68 is installed
OR krb5-client-1.6.3-133.49.68 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
libpng12-0-1.2.50-8 is installed
OR libpng12-0-32bit-1.2.50-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
libldb1-1.1.26-10 is installed
OR libldb1-32bit-1.1.26-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND autofs-5.0.9-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
libXdmcp6-1.1.1-12 is installed
OR libXdmcp6-32bit-1.1.1-12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
AND Package Information
python-2.7.17-7.32 is installed
OR python-demo-2.7.17-7.32 is installed
OR python-doc-2.7.17-7.32 is installed
OR python-doc-pdf-2.7.17-7.32 is installed
OR python-idle-2.7.17-7.32 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
gvfs-1.34.2.1-4.13 is installed
OR gvfs-32bit-1.34.2.1-4.13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 is installed
AND Package Information
389-ds-1.4.0.3-4.7 is installed
OR 389-ds-devel-1.4.0.3-4.7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
AND Package Information
util-linux-systemd-2.33.1-4.5 is installed
OR uuidd-2.33.1-4.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
AND Package Information
salt-3000-4.20 is installed
OR salt-api-3000-4.20 is installed
OR salt-cloud-3000-4.20 is installed
OR salt-fish-completion-3000-4.20 is installed
OR salt-master-3000-4.20 is installed
OR salt-proxy-3000-4.20 is installed
OR salt-ssh-3000-4.20 is installed
OR salt-standalone-formulas-configuration-3000-4.20 is installed
OR salt-syndic-3000-4.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
freeradius-server-3.0.3-10 is installed
OR freeradius-server-doc-3.0.3-10 is installed
OR freeradius-server-krb5-3.0.3-10 is installed
OR freeradius-server-ldap-3.0.3-10 is installed
OR freeradius-server-libs-3.0.3-10 is installed
OR freeradius-server-mysql-3.0.3-10 is installed
OR freeradius-server-perl-3.0.3-10 is installed
OR freeradius-server-postgresql-3.0.3-10 is installed
OR freeradius-server-python-3.0.3-10 is installed
OR freeradius-server-sqlite-3.0.3-10 is installed
OR freeradius-server-utils-3.0.3-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
libspice-server1-0.12.5-10 is installed
OR spice-0.12.5-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
automake-1.13.4-6 is installed
OR m4-1.4.16-15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
openssh-7.2p2-74.30 is installed
OR openssh-askpass-gnome-7.2p2-74.30 is installed
OR openssh-fips-7.2p2-74.30 is installed
OR openssh-helpers-7.2p2-74.30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
kernel-firmware-20170530-21.22 is installed
OR ucode-amd-20170530-21.22 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
kgraft-patch-4_4_121-92_80-default-6-2 is installed
OR kgraft-patch-SLE12-SP2_Update_22-6-2 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3 is installed
AND
libssh2-1-1.4.3-20.9 is installed
OR libssh2-1-32bit-1.4.3-20.9 is installed
OR libssh2_org-1.4.3-20.9 is installed
OR Package Information
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND
libssh2-1-1.4.3-20.9 is installed
OR libssh2-1-32bit-1.4.3-20.9 is installed
OR libssh2_org-1.4.3-20.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND autofs-5.0.9-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
kgraft-patch-4_4_162-94_72-default-6-2 is installed
OR kgraft-patch-SLE12-SP3_Update_22-6-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
kgraft-patch-4_4_176-94_88-default-4-2 is installed
OR kgraft-patch-SLE12-SP3_Update_24-4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
java-1_7_1-ibm-1.7.1_sr4.35-38.29 is installed
OR java-1_7_1-ibm-alsa-1.7.1_sr4.35-38.29 is installed
OR java-1_7_1-ibm-jdbc-1.7.1_sr4.35-38.29 is installed
OR java-1_7_1-ibm-plugin-1.7.1_sr4.35-38.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
avahi-0.6.32-30 is installed
OR avahi-lang-0.6.32-30 is installed
OR avahi-utils-0.6.32-30 is installed
OR libavahi-client3-0.6.32-30 is installed
OR libavahi-client3-32bit-0.6.32-30 is installed
OR libavahi-common3-0.6.32-30 is installed
OR libavahi-common3-32bit-0.6.32-30 is installed
OR libavahi-core7-0.6.32-30 is installed
OR libdns_sd-0.6.32-30 is installed
OR libdns_sd-32bit-0.6.32-30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15-LTSS is installed
AND Package Information
libjavascriptcoregtk-4_0-18-2.28.2-3.54 is installed
OR libwebkit2gtk-4_0-37-2.28.2-3.54 is installed
OR libwebkit2gtk3-lang-2.28.2-3.54 is installed
OR webkit2gtk-4_0-injected-bundles-2.28.2-3.54 is installed
OR webkit2gtk3-2.28.2-3.54 is installed
OR webkit2gtk3-devel-2.28.2-3.54 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND Package Information
libecpg6-12.5-3.9.3 is installed
OR libpq5-12.5-3.9.3 is installed
OR libpq5-32bit-12.5-3.9.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND transfig-3.2.6a-4.9 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND clamav-0.99.3-33.5 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
MozillaFirefox-52.9.0esr-109.38 is installed
OR MozillaFirefox-devel-52.9.0esr-109.38 is installed
OR MozillaFirefox-translations-52.9.0esr-109.38 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND python-Django-1.11.23-3.12 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 9 is installed
AND python-ecdsa-0.13.3-5.10 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND couchdb-1.7.2-3.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 9 is installed
AND Package Information
crowbar-core-6.0+git.1569587091.3f083d63c-3.10 is installed
OR crowbar-core-branding-upstream-6.0+git.1569587091.3f083d63c-3.10 is installed
OR crowbar-ha-6.0+git.1567673476.1342c3d-3.10 is installed
OR crowbar-openstack-6.0+git.1569805311.a94583476-3.10 is installed
OR crowbar-ui-1.3.0+git.1568396400.0344a727-11 is installed
OR grafana-6.2.5-3.6 is installed
OR grafana-monasca-ui-drilldown-1.14.1~dev9-3.6 is installed
OR novnc-1.1.0-3.3 is installed
OR openstack-cinder-13.0.7~dev16-3.10 is installed
OR openstack-cinder-api-13.0.7~dev16-3.10 is installed
OR openstack-cinder-backup-13.0.7~dev16-3.10 is installed
OR openstack-cinder-scheduler-13.0.7~dev16-3.10 is installed
OR openstack-cinder-volume-13.0.7~dev16-3.10 is installed
OR openstack-dashboard-14.0.4~dev11-3.6 is installed
OR openstack-designate-7.0.1~dev22-3.10 is installed
OR openstack-designate-agent-7.0.1~dev22-3.10 is installed
OR openstack-designate-api-7.0.1~dev22-3.10 is installed
OR openstack-designate-central-7.0.1~dev22-3.10 is installed
OR openstack-designate-producer-7.0.1~dev22-3.10 is installed
OR openstack-designate-sink-7.0.1~dev22-3.10 is installed
OR openstack-designate-worker-7.0.1~dev22-3.10 is installed
OR openstack-glance-17.0.1~dev30-3.3 is installed
OR openstack-glance-api-17.0.1~dev30-3.3 is installed
OR openstack-heat-11.0.3~dev23-3.10 is installed
OR openstack-heat-api-11.0.3~dev23-3.10 is installed
OR openstack-heat-api-cfn-11.0.3~dev23-3.10 is installed
OR openstack-heat-engine-11.0.3~dev23-3.10 is installed
OR openstack-heat-plugin-heat_docker-11.0.3~dev23-3.10 is installed
OR openstack-horizon-plugin-heat-ui-1.4.1~dev4-4.6 is installed
OR openstack-horizon-plugin-monasca-ui-1.14.1~dev9-3.6 is installed
OR openstack-ironic-11.1.4~dev15-3.10 is installed
OR openstack-ironic-api-11.1.4~dev15-3.10 is installed
OR openstack-ironic-conductor-11.1.4~dev15-3.10 is installed
OR openstack-ironic-python-agent-3.3.3~dev5-3.10 is installed
OR openstack-keystone-14.1.1~dev16-3.10 is installed
OR openstack-manila-7.3.1~dev6-4.10 is installed
OR openstack-manila-api-7.3.1~dev6-4.10 is installed
OR openstack-manila-data-7.3.1~dev6-4.10 is installed
OR openstack-manila-scheduler-7.3.1~dev6-4.10 is installed
OR openstack-manila-share-7.3.1~dev6-4.10 is installed
OR openstack-neutron-13.0.5~dev50-3.10 is installed
OR openstack-neutron-dhcp-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-gbp-5.0.1~dev472-3.10 is installed
OR openstack-neutron-ha-tool-13.0.5~dev50-3.10 is installed
OR openstack-neutron-l3-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-linuxbridge-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-macvtap-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-metadata-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-metering-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-openvswitch-agent-13.0.5~dev50-3.10 is installed
OR openstack-neutron-server-13.0.5~dev50-3.10 is installed
OR openstack-nova-18.2.3~dev22-3.10 is installed
OR openstack-nova-api-18.2.3~dev22-3.10 is installed
OR openstack-nova-cells-18.2.3~dev22-3.10 is installed
OR openstack-nova-compute-18.2.3~dev22-3.10 is installed
OR openstack-nova-conductor-18.2.3~dev22-3.10 is installed
OR openstack-nova-console-18.2.3~dev22-3.10 is installed
OR openstack-nova-novncproxy-18.2.3~dev22-3.10 is installed
OR openstack-nova-placement-api-18.2.3~dev22-3.10 is installed
OR openstack-nova-scheduler-18.2.3~dev22-3.10 is installed
OR openstack-nova-serialproxy-18.2.3~dev22-3.10 is installed
OR openstack-nova-vncproxy-18.2.3~dev22-3.10 is installed
OR openstack-octavia-3.1.2~dev45-3.10 is installed
OR openstack-octavia-amphora-agent-3.1.2~dev45-3.10 is installed
OR openstack-octavia-api-3.1.2~dev45-3.10 is installed
OR openstack-octavia-health-manager-3.1.2~dev45-3.10 is installed
OR openstack-octavia-housekeeping-3.1.2~dev45-3.10 is installed
OR openstack-octavia-worker-3.1.2~dev45-3.10 is installed
OR openstack-sahara-9.0.2~dev12-3.3 is installed
OR openstack-sahara-api-9.0.2~dev12-3.3 is installed
OR openstack-sahara-engine-9.0.2~dev12-3.3 is installed
OR openstack-tempest-19.0.0-15 is installed
OR openstack-tempest-test-19.0.0-15 is installed
OR openstack-watcher-1.12.1~dev19-4.3 is installed
OR openstack-watcher-doc-1.12.1~dev19-4.3 is installed
OR python-cinder-13.0.7~dev16-3.10 is installed
OR python-cinder-tempest-plugin-0.1.0-11 is installed
OR python-designate-7.0.1~dev22-3.10 is installed
OR python-glance-17.0.1~dev30-3.3 is installed
OR python-heat-11.0.3~dev23-3.10 is installed
OR python-horizon-14.0.4~dev11-3.6 is installed
OR python-horizon-plugin-heat-ui-1.4.1~dev4-4.6 is installed
OR python-horizon-plugin-monasca-ui-1.14.1~dev9-3.6 is installed
OR python-ironic-11.1.4~dev15-3.10 is installed
OR python-keystone-14.1.1~dev16-3.10 is installed
OR python-manila-7.3.1~dev6-4.10 is installed
OR python-neutron-13.0.5~dev50-3.10 is installed
OR python-neutron-gbp-5.0.1~dev472-3.10 is installed
OR python-nova-18.2.3~dev22-3.10 is installed
OR python-octavia-3.1.2~dev45-3.10 is installed
OR python-openstack_auth-14.0.4~dev11-3.6 is installed
OR python-sahara-9.0.2~dev12-3.3 is installed
OR python-tempest-19.0.0-15 is installed
OR python-urllib3-1.23-3.9 is installed
OR python-watcher-1.12.1~dev19-4.3 is installed
OR ruby2.1-rubygem-easy_diff-1.0.0-4.3 is installed
OR rubygem-easy_diff-1.0.0-4.3 is installed
|