postgresql:10 postgresql-10.23-1.module+el8+1581+24b533d8

エラータID: AXSA:2023-4747:01

Release date: 
Monday, January 16, 2023 - 07:51
Subject: 
postgresql:10 postgresql-10.23-1.module+el8+1581+24b533d8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

* postgresql: Extension scripts replace objects not belonging to the extension. (CVE-2022-2625)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-2625
A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one schema, the ability to lure or wait for an administrator to create or update an affected extension in that schema, and the ability to lure or wait for a victim to use the object targeted in CREATE OR REPLACE or CREATE IF NOT EXISTS. Given all three prerequisites, this flaw allows an attacker to run arbitrary code as the victim role, which may be a superuser.

Modularity name: postgresql
Stream name: 10

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. postgresql-10.23-1.module+el8+1581+24b533d8.src.rpm
    MD5: cd2e0cbb16c81c612dd6123548df9594
    SHA-256: f2c7c543095b796690994a3e47f310f302eb49a16188c615a3d3ec402990ba84
    Size: 34.21 MB

Asianux Server 8 for x86_64
  1. postgresql-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 1c41a15cc0521c5782d12cb31abd9688
    SHA-256: 693e8c5e058eda6dd8f80020e854f0568e3e59c955b9498939aa5b8f4444395d
    Size: 1.50 MB
  2. postgresql-contrib-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: deb642b12af8fee156fbe9d4b7eb5c97
    SHA-256: b050a3e29da5801c12c12f5c1b18742fdb3e53888edd435544a7f8f9caf4c8ec
    Size: 809.92 kB
  3. postgresql-debugsource-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 01587783bdf4b3e20a90483405e55480
    SHA-256: cc9ad36f3695cdcf836a3960782bd58934438ab0f6ed7c92fbf18d8a4dd303ef
    Size: 14.59 MB
  4. postgresql-docs-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 67208726fda3f7155c33f9ccdce31fc1
    SHA-256: 3619b8606ef57ef4718ba68531e3695c21b6641f621ad353a236bb6208dca408
    Size: 2.23 MB
  5. postgresql-plperl-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: e239d151a74ba0b44c3202ea3f215feb
    SHA-256: 79fdefcf9d319f9961236ec472c087c4dfc6010b6a44bbc4fd66ad975e33a59e
    Size: 101.44 kB
  6. postgresql-plpython3-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: d7f88649a13c7f94060c2776f1acfa32
    SHA-256: 4d0f74d8fe49cfb640d01b7cc0b8f399e7fa907959a162131b1d167cf11433bb
    Size: 121.16 kB
  7. postgresql-pltcl-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 2dfeb30d12c44a6636d62871c856abb4
    SHA-256: 0120ae75f7d192aa8901d6f293403a75ce4d4111106d093d328739e097185247
    Size: 77.57 kB
  8. postgresql-server-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 346181c18dfbaae338fcc9c26cdf0bd7
    SHA-256: 9d01db2cc081d65d25e3816d73146f4719f42c00279d5b6bb80ea5c31f4b1bb5
    Size: 5.05 MB
  9. postgresql-server-devel-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 52cee93deb80fdfdffe0b368efca3f90
    SHA-256: dd752c42f26d9f7c75127b9a6284ab121e9af6993ebf66f6bbdb1d0b29432be5
    Size: 1.16 MB
  10. postgresql-static-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 8b0fc04d232740ccbff29562827694ed
    SHA-256: e36a7ae023e8ba9ebe8911daa16d3df40ddb0eb1487f7e5b2691dd8d707c30a1
    Size: 126.24 kB
  11. postgresql-test-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: dae200716b8d117fc5a5bf387a00564b
    SHA-256: 4e337a34688a521b6666f0f5e5263e92cc187da0131886bb3ecb0d11bd3fa366
    Size: 1.68 MB
  12. postgresql-test-rpm-macros-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 31a44a94baeece5ff763b04c97751a51
    SHA-256: ea7eb4a094b7140b781bdef89c01156a6f6765017888914cac86d9b7e073ae88
    Size: 48.68 kB
  13. postgresql-upgrade-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: 17e55caa340fc98fe9939381fdda27cf
    SHA-256: 48fb4191709b61fc1789a6de548bca078c15ab2f4b35773f143ad81b0f61eb1d
    Size: 3.34 MB
  14. postgresql-upgrade-devel-10.23-1.module+el8+1581+24b533d8.x86_64.rpm
    MD5: ef33819c95fdc9493ae811641e6d0372
    SHA-256: c34a9ca59e8b6067d3fc64fdb48980af03b1d4d83e5ddd0b40413f3234177117
    Size: 760.05 kB