Oval Definition:oval:org.opensuse.security:def:60300
Revision Date:2021-01-26Version:1
Title:Security update for postgresql, postgresql12, postgresql13 (Important)
Description:

This update for postgresql, postgresql12, postgresql13 fixes the following issues:

Initial packaging of PostgreSQL 13:

https://www.postgresql.org/about/news/2077/ * https://www.postgresql.org/docs/13/release-13.html

Changes in postgresql:

- Bump postgresql major version to 13.

Changes in postgresql12:

- %ghost the symlinks to pg_config and ecpg. (bsc#1178961) - BuildRequire libpq5 and libecpg6 when not building them to avoid dangling symlinks in the devel package. (bsc#1179765) - Fix a DST problem in the test suite.

Changes in postgresql13:

- Add postgresql-icu68.patch: fix build with ICU 68

- %ghost the symlinks to pg_config and ecpg. (bsc#1178961) - BuildRequire libpq5 and libecpg6 when not building them to avoid dangling symlinks in the devel package. (bsc#1179765)

Upgrade to version 13.1:

CVE-2020-25695, bsc#1178666: Block DECLARE CURSOR ... WITH HOLD and firing of deferred triggers within index expressions and materialized view queries. * CVE-2020-25694, bsc#1178667: a) Fix usage of complex connection-string parameters in pg_dump, pg_restore, clusterdb, reindexdb, and vacuumdb. b) When psql's \connect command re-uses connection parameters, ensure that all non-overridden parameters from a previous connection string are re-used. * CVE-2020-25696, bsc#1178668: Prevent psql's \gset command from modifying specially-treated variables. * Fix recently-added timetz test case so it works when the USA is not observing daylight savings time. (obsoletes postgresql-timetz.patch) * https://www.postgresql.org/about/news/2111/ * https://www.postgresql.org/docs/13/release-13-1.html

- Fix a DST problem in the test suite.


Family:unixClass:patch
Status:Reference(s):1005778
1005780
1005781
1008037
1008038
1010940
1012382
1019021
1019695
1019696
1022604
1038785
1053043
1056094
1058722
1059235
1063638
1064101
1064115
1065600
1066223
1071767
1071777
1076505
1080682
1083630
1085535
1085539
1090888
1097775
1099658
1100132
1100167
1102126
1106110
1106284
1106929
1108293
1108838
1109957
1110785
1110946
1112063
1112178
1112959
1116803
1117080
1117562
1118896
1119086
1120642
1120843
1120885
1120902
1122776
1123561
1125580
1126040
1126356
1126503
1128052
1129138
1129770
1130972
1131107
1131488
1131543
1131565
1132212
1132374
1132472
1133188
1133874
1134160
1134162
1134338
1134537
1134564
1134565
1134566
1134651
1134760
1134806
1134813
1134848
1135013
1135014
1135015
1135100
1135120
1135281
1135603
1135642
1135661
1135878
1136424
1136438
1136446
1136448
1136449
1136451
1136452
1136455
1136458
1136539
1136573
1136575
1136586
1136590
1136623
1136810
1136935
1136990
1137142
1137162
1137479
1137528
1137586
1137739
1137752
1142121
1142542
1144453
1150011
1153452
1154231
1154232
1154830
1157968
1157969
1159447
1160888
1161919
1164133
1164134
1164135
1164136
1164137
1164138
1164139
1164140
1165022
1165393
1165787
1166389
1167373
1167440
1167532
1171162
1171823
1172450
1172906
1172935
1173197
1173304
1173413
1173416
1173418
1174006
1174145
1174242
1174302
1174583
1175484
1175986
1175993
1177120
1177948
1178666
1178667
1178668
1178961
1179765
843419
CVE-2009-1886
CVE-2009-1888
CVE-2009-2813
CVE-2009-2906
CVE-2009-2948
CVE-2009-4492
CVE-2010-0541
CVE-2010-0547
CVE-2010-0728
CVE-2010-0787
CVE-2010-0926
CVE-2010-1635
CVE-2010-1642
CVE-2010-2063
CVE-2010-3069
CVE-2011-0719
CVE-2011-1004
CVE-2011-1005
CVE-2011-2485
CVE-2011-2522
CVE-2011-2694
CVE-2011-4815
CVE-2012-0817
CVE-2012-0870
CVE-2012-1174
CVE-2012-1182
CVE-2012-2111
CVE-2012-2669
CVE-2012-5532
CVE-2012-6150
CVE-2013-0172
CVE-2013-0213
CVE-2013-0214
CVE-2013-0454
CVE-2013-1863
CVE-2013-4124
CVE-2013-4288
CVE-2013-4343
CVE-2013-4408
CVE-2013-4475
CVE-2013-4476
CVE-2013-4496
CVE-2013-6442
CVE-2014-0178
CVE-2014-0239
CVE-2014-0244
CVE-2014-3493
CVE-2014-3560
CVE-2014-8143
CVE-2014-9474
CVE-2015-0240
CVE-2015-3223
CVE-2015-4491
CVE-2015-5252
CVE-2015-5296
CVE-2015-5299
CVE-2015-5330
CVE-2015-5370
CVE-2015-7552
CVE-2015-7560
CVE-2015-7673
CVE-2015-7674
CVE-2015-8467
CVE-2015-8543
CVE-2016-0771
CVE-2016-10156
CVE-2016-2110
CVE-2016-2111
CVE-2016-2112
CVE-2016-2113
CVE-2016-2115
CVE-2016-2118
CVE-2016-2119
CVE-2016-2123
CVE-2016-2125
CVE-2016-2126
CVE-2016-6352
CVE-2016-7795
CVE-2016-8614
CVE-2016-8628
CVE-2016-8647
CVE-2016-9587
CVE-2017-10268
CVE-2017-10378
CVE-2017-12627
CVE-2017-17456
CVE-2017-17457
CVE-2017-2619
CVE-2017-7466
CVE-2017-7494
CVE-2017-7550
CVE-2018-10875
CVE-2018-11779
CVE-2018-13139
CVE-2018-16837
CVE-2018-16859
CVE-2018-16876
CVE-2018-17972
CVE-2018-18623
CVE-2018-18624
CVE-2018-18625
CVE-2018-7191
CVE-2019-0202
CVE-2019-10156
CVE-2019-10206
CVE-2019-10217
CVE-2019-11190
CVE-2019-11477
CVE-2019-11478
CVE-2019-11479
CVE-2019-11486
CVE-2019-11815
CVE-2019-11833
CVE-2019-11884
CVE-2019-12382
CVE-2019-14822
CVE-2019-14846
CVE-2019-14856
CVE-2019-14858
CVE-2019-14864
CVE-2019-14904
CVE-2019-14905
CVE-2019-14907
CVE-2019-18860
CVE-2019-19844
CVE-2019-3828
CVE-2019-3846
CVE-2019-5489
CVE-2020-10177
CVE-2020-10188
CVE-2020-10378
CVE-2020-10684
CVE-2020-10685
CVE-2020-10691
CVE-2020-10729
CVE-2020-10744
CVE-2020-10994
CVE-2020-11110
CVE-2020-14059
CVE-2020-14093
CVE-2020-14154
CVE-2020-14330
CVE-2020-14332
CVE-2020-14365
CVE-2020-14954
CVE-2020-1733
CVE-2020-1734
CVE-2020-1735
CVE-2020-1736
CVE-2020-1737
CVE-2020-17376
CVE-2020-1738
CVE-2020-1739
CVE-2020-1740
CVE-2020-1746
CVE-2020-1753
CVE-2020-25032
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-26137
CVE-2020-7471
CVE-2020-9402
SUSE-SU-2018:0384-1
SUSE-SU-2018:2065-1
SUSE-SU-2019:1527-1
SUSE-SU-2019:2389-1
SUSE-SU-2020:0233-1
SUSE-SU-2020:1533-1
SUSE-SU-2020:1794-1
SUSE-SU-2020:1803-1
SUSE-SU-2020:2225-1
SUSE-SU-2020:3309-1
SUSE-SU-2021:0217-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • neovim-0.3.7-lp151.2.7 is installed
  • OR neovim-lang-0.3.7-lp151.2.7 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-68.1.1-lp151.2.13 is installed
  • OR MozillaThunderbird-buildsymbols-68.1.1-lp151.2.13 is installed
  • OR MozillaThunderbird-translations-common-68.1.1-lp151.2.13 is installed
  • OR MozillaThunderbird-translations-other-68.1.1-lp151.2.13 is installed
  • OR enigmail-2.1.2-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gdk-pixbuf-lang-2.34.0-18 is installed
  • OR gdk-pixbuf-query-loaders-2.34.0-18 is installed
  • OR gdk-pixbuf-query-loaders-32bit-2.34.0-18 is installed
  • OR libgdk_pixbuf-2_0-0-2.34.0-18 is installed
  • OR libgdk_pixbuf-2_0-0-32bit-2.34.0-18 is installed
  • OR typelib-1_0-GdkPixbuf-2_0-2.34.0-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • krb5-appl-1.0.3-3.3 is installed
  • OR krb5-appl-clients-1.0.3-3.3 is installed
  • OR krb5-appl-servers-1.0.3-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kernel-default-4.4.180-94.113 is installed
  • OR kernel-default-base-4.4.180-94.113 is installed
  • OR kernel-default-devel-4.4.180-94.113 is installed
  • OR kernel-default-kgraft-4.4.180-94.113 is installed
  • OR kernel-devel-4.4.180-94.113 is installed
  • OR kernel-macros-4.4.180-94.113 is installed
  • OR kernel-source-4.4.180-94.113 is installed
  • OR kernel-syms-4.4.180-94.113 is installed
  • OR kgraft-patch-4_4_180-94_113-default-1-4.5 is installed
  • OR kgraft-patch-SLE12-SP3_Update_30-1-4.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libxerces-c-3_1-3.1.1-13.3 is installed
  • OR libxerces-c-3_1-32bit-3.1.1-13.3 is installed
  • OR xerces-c-3.1.1-13.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND ucode-intel-20180807-13.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cvs-1.12.12-182.3 is installed
  • OR cvs-doc-1.12.12-182.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • grub2-2.02-12.39 is installed
  • OR grub2-arm64-efi-2.02-12.39 is installed
  • OR grub2-i386-pc-2.02-12.39 is installed
  • OR grub2-snapper-plugin-2.02-12.39 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.39 is installed
  • OR grub2-x86_64-efi-2.02-12.39 is installed
  • OR grub2-x86_64-xen-2.02-12.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • libX11-1.6.2-12.8 is installed
  • OR libX11-6-1.6.2-12.8 is installed
  • OR libX11-6-32bit-1.6.2-12.8 is installed
  • OR libX11-data-1.6.2-12.8 is installed
  • OR libX11-xcb1-1.6.2-12.8 is installed
  • OR libX11-xcb1-32bit-1.6.2-12.8 is installed
  • OR libxcb-1.10-4.5 is installed
  • OR libxcb-dri2-0-1.10-4.5 is installed
  • OR libxcb-dri2-0-32bit-1.10-4.5 is installed
  • OR libxcb-dri3-0-1.10-4.5 is installed
  • OR libxcb-dri3-0-32bit-1.10-4.5 is installed
  • OR libxcb-glx0-1.10-4.5 is installed
  • OR libxcb-glx0-32bit-1.10-4.5 is installed
  • OR libxcb-present0-1.10-4.5 is installed
  • OR libxcb-present0-32bit-1.10-4.5 is installed
  • OR libxcb-randr0-1.10-4.5 is installed
  • OR libxcb-render0-1.10-4.5 is installed
  • OR libxcb-render0-32bit-1.10-4.5 is installed
  • OR libxcb-shape0-1.10-4.5 is installed
  • OR libxcb-shm0-1.10-4.5 is installed
  • OR libxcb-shm0-32bit-1.10-4.5 is installed
  • OR libxcb-sync1-1.10-4.5 is installed
  • OR libxcb-sync1-32bit-1.10-4.5 is installed
  • OR libxcb-xf86dri0-1.10-4.5 is installed
  • OR libxcb-xfixes0-1.10-4.5 is installed
  • OR libxcb-xfixes0-32bit-1.10-4.5 is installed
  • OR libxcb-xinerama0-1.10-4.5 is installed
  • OR libxcb-xkb1-1.10-4.5 is installed
  • OR libxcb-xkb1-32bit-1.10-4.5 is installed
  • OR libxcb-xv0-1.10-4.5 is installed
  • OR libxcb1-1.10-4.5 is installed
  • OR libxcb1-32bit-1.10-4.5 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP5 is installed
  • AND
  • libecpg6-13.1-3.3.1 is installed
  • OR libpq5-13.1-3.3.1 is installed
  • OR libpq5-32bit-13.1-3.3.1 is installed
  • OR postgresql-13-4.7.1 is installed
  • OR postgresql-contrib-13-4.7.1 is installed
  • OR postgresql-docs-13-4.7.1 is installed
  • OR postgresql-plperl-13-4.7.1 is installed
  • OR postgresql-plpython-13-4.7.1 is installed
  • OR postgresql-pltcl-13-4.7.1 is installed
  • OR postgresql-server-13-4.7.1 is installed
  • OR postgresql12-12.5-3.12.3 is installed
  • OR postgresql12-contrib-12.5-3.12.3 is installed
  • OR postgresql12-docs-12.5-3.12.3 is installed
  • OR postgresql12-plperl-12.5-3.12.3 is installed
  • OR postgresql12-plpython-12.5-3.12.3 is installed
  • OR postgresql12-pltcl-12.5-3.12.3 is installed
  • OR postgresql12-server-12.5-3.12.3 is installed
  • OR postgresql13-13.1-3.3.1 is installed
  • OR postgresql13-contrib-13.1-3.3.1 is installed
  • OR postgresql13-docs-13.1-3.3.1 is installed
  • OR postgresql13-plperl-13.1-3.3.1 is installed
  • OR postgresql13-plpython-13.1-3.3.1 is installed
  • OR postgresql13-pltcl-13.1-3.3.1 is installed
  • OR postgresql13-server-13.1-3.3.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • AND
  • libecpg6-13.1-3.3.1 is installed
  • OR libpq5-13.1-3.3.1 is installed
  • OR libpq5-32bit-13.1-3.3.1 is installed
  • OR postgresql-13-4.7.1 is installed
  • OR postgresql-contrib-13-4.7.1 is installed
  • OR postgresql-docs-13-4.7.1 is installed
  • OR postgresql-plperl-13-4.7.1 is installed
  • OR postgresql-plpython-13-4.7.1 is installed
  • OR postgresql-pltcl-13-4.7.1 is installed
  • OR postgresql-server-13-4.7.1 is installed
  • OR postgresql12-12.5-3.12.3 is installed
  • OR postgresql12-contrib-12.5-3.12.3 is installed
  • OR postgresql12-docs-12.5-3.12.3 is installed
  • OR postgresql12-plperl-12.5-3.12.3 is installed
  • OR postgresql12-plpython-12.5-3.12.3 is installed
  • OR postgresql12-pltcl-12.5-3.12.3 is installed
  • OR postgresql12-server-12.5-3.12.3 is installed
  • OR postgresql13-13.1-3.3.1 is installed
  • OR postgresql13-contrib-13.1-3.3.1 is installed
  • OR postgresql13-docs-13.1-3.3.1 is installed
  • OR postgresql13-plperl-13.1-3.3.1 is installed
  • OR postgresql13-plpython-13.1-3.3.1 is installed
  • OR postgresql13-pltcl-13.1-3.3.1 is installed
  • OR postgresql13-server-13.1-3.3.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ansible-2.9.14-3.15 is installed
  • OR crowbar-core-5.0+git.1600432272.b3ad722f0-3.44 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1600432272.b3ad722f0-3.44 is installed
  • OR crowbar-openstack-5.0+git.1599037158.5c4d07480-4.43 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20201007-1.29 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20201007-1.29 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20201007-1.29 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20201007-1.29 is installed
  • OR grafana-6.7.4-4.12 is installed
  • OR grafana-natel-discrete-panel-0.0.9-3.3 is installed
  • OR openstack-cinder-11.2.3~dev29-3.28 is installed
  • OR openstack-cinder-api-11.2.3~dev29-3.28 is installed
  • OR openstack-cinder-backup-11.2.3~dev29-3.28 is installed
  • OR openstack-cinder-doc-11.2.3~dev29-3.28 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev29-3.28 is installed
  • OR openstack-cinder-volume-11.2.3~dev29-3.28 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.15 is installed
  • OR openstack-neutron-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-doc-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev69-3.37 is installed
  • OR openstack-neutron-server-11.0.9~dev69-3.37 is installed
  • OR openstack-nova-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-api-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-cells-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-compute-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-conductor-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-console-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-doc-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-placement-api-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-scheduler-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev76-3.39 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev76-3.39 is installed
  • OR python-Django-1.11.29-3.19 is installed
  • OR python-Pillow-4.2.1-3.9 is installed
  • OR python-cinder-11.2.3~dev29-3.28 is installed
  • OR python-keystoneclient-3.13.1-3.3 is installed
  • OR python-keystoneclient-doc-3.13.1-3.3 is installed
  • OR python-keystonemiddleware-4.17.1-5.3 is installed
  • OR python-kombu-4.1.0-3.7 is installed
  • OR python-neutron-11.0.9~dev69-3.37 is installed
  • OR python-nova-16.1.9~dev76-3.39 is installed
  • OR python-straight-plugin-1.5.0-1.3 is installed
  • OR python-urllib3-1.22-5.12 is installed
  • OR release-notes-suse-openstack-cloud-8.20200922-3.23 is installed
  • OR ruby2.1-rubygem-crowbar-client-3.9.3-1 is installed
  • OR rubygem-crowbar-client-3.9.3-1 is installed
  • OR storm-1.2.3-3.6 is installed
  • OR storm-nimbus-1.2.3-3.6 is installed
  • OR storm-supervisor-1.2.3-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Twisted-15.2.1-9.5 is installed
  • BACK