SUSE-SU-2022:2989-1
Dashboard / Vulnerabilities / SUSE-SU-2022:2989-1
SUSE-SU-2022:2989-1
Summary: Security update for postgresql14
Details: This update for postgresql14 fixes the following issues: - Upgrade to version 14.5: - CVE-2022-2625: Fixed an issue where extension scripts would replace objects not belonging to that extension (bsc#1202368). - Upgrade to version 14.4 (bsc#1200437) - Release notes: https://www.postgresql.org/docs/release/14.4/ - Release announcement: https://www.postgresql.org/about/news/p-2470/ - Prevent possible corruption of indexes created or rebuilt with the CONCURRENTLY option (bsc#1200437) - Pin to llvm13 until the next patchlevel update (bsc#1198166)
References: https://www.suse.com/support/update/announcement/2022/suse-su-20222989-1/, https://bugzilla.suse.com/1198166, https://bugzilla.suse.com/1200437, https://bugzilla.suse.com/1202368, https://www.suse.com/security/cve/CVE-2022-2625
Affected packages
Package
Name: postgresql14
Purl: pkg:rpm/suse/postgresql14&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
