Issued:
2026-01-13
Updated:
2026-01-13

RHSA-2026:0492 - Moderate: postgresql:15 security update


Synopsis

Moderate: postgresql:15 security update

Type/Severity

Security Advisory Moderate

Topic

An update for the postgresql:15 module is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: CREATE STATISTICS does not check for schema CREATE privilege (CVE-2025-12817)

  • postgresql: libpq undersizes allocations, via integer wraparound (CVE-2025-12818)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

ProductVersionArch
Red Hat Enterprise Linux for x86_649x86_64
Red Hat Enterprise Linux for Power, little endian9ppc64le
Red Hat Enterprise Linux for IBM z Systems9s390x
Red Hat Enterprise Linux for ARM 649aarch64

Updated Packages

  • postgresql-plpython3-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-server-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-plpython3-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgres-decoderbufs-debugsource-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • pgaudit-debuginfo-1.7.0-1.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • pg_repack-1.4.8-2.module+el9.5.0+22224+f5585c78.src.rpm
  • postgresql-private-libs-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-pltcl-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-test-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.src.rpm
  • postgresql-test-rpm-macros-15.15-2.module+el9.7.0+23785+f55bffc9.noarch.rpm
  • postgresql-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-upgrade-devel-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • pg_repack-debuginfo-1.4.8-2.module+el9.5.0+22224+f5585c78.x86_64.rpm
  • postgresql-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • pgaudit-1.7.0-1.module+el9.2.0+17405+aeb9ec60.src.rpm
  • postgresql-docs-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-docs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-static-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-test-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-contrib-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-upgrade-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • pgaudit-1.7.0-1.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • postgresql-private-libs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • pg_repack-debugsource-1.4.8-2.module+el9.5.0+22224+f5585c78.x86_64.rpm
  • pgaudit-debugsource-1.7.0-1.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • postgresql-upgrade-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-debugsource-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-upgrade-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • pg_repack-1.4.8-2.module+el9.5.0+22224+f5585c78.x86_64.rpm
  • postgres-decoderbufs-debuginfo-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.x86_64.rpm
  • postgresql-server-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-server-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-plperl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-plperl-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-pltcl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-private-devel-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-15.15-2.module+el9.7.0+23785+f55bffc9.src.rpm
  • postgresql-contrib-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-server-devel-15.15-2.module+el9.7.0+23785+f55bffc9.x86_64.rpm
  • postgresql-debugsource-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgres-decoderbufs-debugsource-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • pg_repack-debugsource-1.4.8-2.module+el9.5.0+22224+f5585c78.aarch64.rpm
  • pgaudit-debuginfo-1.7.0-1.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • postgres-decoderbufs-debuginfo-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • pgaudit-1.7.0-1.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • postgresql-contrib-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-contrib-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-plpython3-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-static-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-test-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-private-libs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-upgrade-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • pg_repack-1.4.8-2.module+el9.5.0+22224+f5585c78.aarch64.rpm
  • postgresql-docs-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-pltcl-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-private-devel-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-pltcl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-upgrade-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • pgaudit-debugsource-1.7.0-1.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • postgresql-test-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-upgrade-devel-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-docs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-server-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.aarch64.rpm
  • postgresql-server-devel-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-plperl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-plperl-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-server-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-private-libs-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • pg_repack-debuginfo-1.4.8-2.module+el9.5.0+22224+f5585c78.aarch64.rpm
  • postgresql-plpython3-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-server-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-upgrade-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.aarch64.rpm
  • postgresql-plperl-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-server-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-debugsource-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-server-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-test-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • pgaudit-1.7.0-1.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-static-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgres-decoderbufs-debugsource-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-private-devel-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • pg_repack-debugsource-1.4.8-2.module+el9.5.0+22224+f5585c78.ppc64le.rpm
  • postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-plperl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-docs-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-contrib-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-upgrade-devel-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-pltcl-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-plpython3-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-contrib-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-private-libs-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-test-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgres-decoderbufs-debuginfo-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-private-libs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-docs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • pg_repack-1.4.8-2.module+el9.5.0+22224+f5585c78.ppc64le.rpm
  • pgaudit-debuginfo-1.7.0-1.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-plpython3-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • pg_repack-debuginfo-1.4.8-2.module+el9.5.0+22224+f5585c78.ppc64le.rpm
  • postgresql-pltcl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-upgrade-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-upgrade-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • pgaudit-debugsource-1.7.0-1.module+el9.2.0+17405+aeb9ec60.ppc64le.rpm
  • postgresql-upgrade-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-server-devel-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgresql-server-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.ppc64le.rpm
  • postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • postgresql-contrib-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-private-libs-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-plpython3-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-plpython3-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-plperl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-private-devel-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-static-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-upgrade-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-pltcl-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • pgaudit-1.7.0-1.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • postgresql-test-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-docs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-debugsource-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgres-decoderbufs-debuginfo-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • postgresql-test-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-plperl-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-pltcl-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • pgaudit-debuginfo-1.7.0-1.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • postgresql-server-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • pg_repack-1.4.8-2.module+el9.5.0+22224+f5585c78.s390x.rpm
  • postgresql-private-libs-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-upgrade-devel-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-docs-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • pg_repack-debuginfo-1.4.8-2.module+el9.5.0+22224+f5585c78.s390x.rpm
  • pg_repack-debugsource-1.4.8-2.module+el9.5.0+22224+f5585c78.s390x.rpm
  • postgres-decoderbufs-debugsource-1.9.7-1.Final.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • pgaudit-debugsource-1.7.0-1.module+el9.2.0+17405+aeb9ec60.s390x.rpm
  • postgresql-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-server-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-server-devel-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-server-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-upgrade-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-contrib-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm
  • postgresql-upgrade-devel-debuginfo-15.15-2.module+el9.7.0+23785+f55bffc9.s390x.rpm

Fixes

CVEs

References


Additional information