Oval Definition:oval:org.opensuse.security:def:59564
Revision Date:2021-11-20Version:1
Title:Security update for postgresql, postgresql13, postgresql14 (Important)
Description:

This update for postgresql, postgresql13 and postgresql14 fixes the following issues:

Security issues fixed:

- CVE-2021-23214: Make the server reject extraneous data after an SSL or GSS encryption handshake (bsc#1192516). - CVE-2021-23222: Make libpq reject extraneous data after an SSL or GSS encryption handshake (bsc#1192516).

This update also ships postgresql14 to SUSE Linux Enterprise 12 SP5. (jsc#SLE-22673) On older service packs only libpq5 and libecpg6 are being replaced by the postgresql14 variants.

Feature changes in postgresql14:

- https://www.postgresql.org/about/news/postgresql-14-released-2318/ - https://www.postgresql.org/docs/14/release-14.html

Family:unixClass:patch
Status:Reference(s):1013882
1040311
1040312
1040313
1050577
1050578
1050579
1050581
1055960
1077330
1091236
1094290
1094291
1097158
1097624
1098592
1099031
1101676
1101677
1101678
1103342
1112368
1112397
1112417
1112421
1112432
1116686
1118754
1119553
1119554
1119555
1119556
1119557
1119558
1119947
1128471
1128472
1128474
1128476
1128480
1128481
1128490
1128492
1128493
1132666
1136037
1144504
1149458
1151839
1160968
1162610
1162972
1172405
1173991
1174284
1175194
1175686
1178666
1178667
1178668
1192516
CVE-2010-2547
CVE-2010-3430
CVE-2010-3431
CVE-2010-3853
CVE-2011-3148
CVE-2011-3149
CVE-2013-4351
CVE-2013-4402
CVE-2014-2583
CVE-2014-4617
CVE-2015-1606
CVE-2015-1607
CVE-2015-3238
CVE-2016-9843
CVE-2017-11624
CVE-2017-11625
CVE-2017-11626
CVE-2017-11627
CVE-2017-12595
CVE-2017-9208
CVE-2017-9209
CVE-2017-9210
CVE-2018-0732
CVE-2018-0739
CVE-2018-1116
CVE-2018-16884
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2018-4437
CVE-2018-4438
CVE-2018-4441
CVE-2018-4442
CVE-2018-4443
CVE-2018-4464
CVE-2019-12625
CVE-2019-12900
CVE-2019-2529
CVE-2019-2537
CVE-2019-3855
CVE-2019-3856
CVE-2019-3857
CVE-2019-3858
CVE-2019-3859
CVE-2019-3860
CVE-2019-3861
CVE-2019-3862
CVE-2019-3863
CVE-2020-14350
CVE-2020-15663
CVE-2020-15664
CVE-2020-15670
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-2583
CVE-2020-2593
CVE-2020-2604
CVE-2020-2659
CVE-2020-8022
CVE-2020-8597
CVE-2021-23214
CVE-2021-23222
SUSE-SU-2018:1887-1
SUSE-SU-2018:2158-1
SUSE-SU-2018:2163-1
SUSE-SU-2019:0655-1
SUSE-SU-2019:2048-1
SUSE-SU-2019:3066-1
SUSE-SU-2020:0456-1
SUSE-SU-2020:0490-1
SUSE-SU-2020:1791-1
SUSE-SU-2020:2544-1
SUSE-SU-2020:3477-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libpango-1_0-0-1.40.14-lp150.1 is installed
  • OR typelib-1_0-Pango-1_0-1.40.14-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libxslt-1.1.32-lp151.3.3 is installed
  • OR libxslt-devel-1.1.32-lp151.3.3 is installed
  • OR libxslt-devel-32bit-1.1.32-lp151.3.3 is installed
  • OR libxslt-python-1.1.32-lp151.3.3 is installed
  • OR libxslt-tools-1.1.32-lp151.3.3 is installed
  • OR libxslt1-1.1.32-lp151.3.3 is installed
  • OR libxslt1-32bit-1.1.32-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND clamav-0.100.3-33.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • cups-filters-1.0.58-15.2 is installed
  • OR cups-filters-cups-browsed-1.0.58-15.2 is installed
  • OR cups-filters-foomatic-rip-1.0.58-15.2 is installed
  • OR cups-filters-ghostscript-1.0.58-15.2 is installed
  • OR libqpdf18-7.1.1-3.3 is installed
  • OR qpdf-7.1.1-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gpg2-2.0.24-8 is installed
  • OR gpg2-lang-2.0.24-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND golang-github-prometheus-node_exporter-0.18.1-1.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-68.3.0-109.98 is installed
  • OR MozillaFirefox-translations-common-68.3.0-109.98 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_176-94_88-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_24-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • gdm-3.10.0.1-54.6 is installed
  • OR gdm-lang-3.10.0.1-54.6 is installed
  • OR gdmflexiserver-3.10.0.1-54.6 is installed
  • OR libgdm1-3.10.0.1-54.6 is installed
  • OR typelib-1_0-Gdm-1_0-3.10.0.1-54.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • apache-commons-daemon-1.0.15-6 is installed
  • OR apache-commons-daemon-javadoc-1.0.15-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libecpg6-14.1-3.3.1 is installed
  • OR libpq5-14.1-3.3.1 is installed
  • OR libpq5-32bit-14.1-3.3.1 is installed
  • OR postgresql-14-4.10.1 is installed
  • OR postgresql-contrib-14-4.10.1 is installed
  • OR postgresql-docs-14-4.10.1 is installed
  • OR postgresql-plperl-14-4.10.1 is installed
  • OR postgresql-plpython-14-4.10.1 is installed
  • OR postgresql-pltcl-14-4.10.1 is installed
  • OR postgresql-server-14-4.10.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libmysqlclient18-10.0.38-29.27 is installed
  • OR mariadb-10.0.38-29.27 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • dovecot22-2.2.31-19.22 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.22 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.22 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND ppp-2.4.7-4.3 is installed
  • BACK