Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE 15.4: 2023:0450-1 Important: PostgreSQL12 Memory Leak Fix

opensuse
Calendar Grey February 20, 2023
Dist Opensuse Esm H88
The latest release for postgresql12 resolves a critical vulnerability affecting SUSE platforms. Make sure your installations are up-to-date.
An update that fixes one vulnerability is now available.

Description

This update for postgresql12 fixes the following issues:

Update to 12.14:

- CVE-2022-41862: Fixed memory leak in libpq (bsc#1208102).

Patch

Patch Instructions:

To install this SUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.4:

zypper in -t patch openSUSE-SLE-15.4-2023-450=1

- SUSE Linux Enterprise Server for SAP 15-SP3:

zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-450=1

- SUSE Linux Enterprise Server for SAP 15-SP2:

zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2023-450=1

- SUSE Linux Enterprise Server 15-SP3-LTSS:

zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-450=1

- SUSE Linux Enterprise Server 15-SP2-LTSS:

zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-450=1

- SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS:

zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-450=1

- SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS:

zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-450=1

- SUSE Linux Enterprise High Performance...

Read the Full Advisory

Package List

- openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64):

postgresql12-12.14-150200.8.41.1

postgresql12-contrib-12.14-150200.8.41.1

postgresql12-contrib-debuginfo-12.14-150200.8.41.1

postgresql12-debuginfo-12.14-150200.8.41.1

postgresql12-debugsource-12.14-150200.8.41.1

postgresql12-devel-12.14-150200.8.41.1

postgresql12-devel-debuginfo-12.14-150200.8.41.1

postgresql12-llvmjit-12.14-150200.8.41.1

postgresql12-llvmjit-debuginfo-12.14-150200.8.41.1

postgresql12-llvmjit-devel-12.14-150200.8.41.1

postgresql12-plperl-12.14-150200.8.41.1

postgresql12-plperl-debuginfo-12.14-150200.8.41.1

postgresql12-plpython-12.14-150200.8.41.1

postgresql12-plpython-debuginfo-12.14-150200.8.41.1

postgresql12-pltcl-12.14-150200.8.41.1

postgresql12-pltcl-debuginfo-12.14-150200.8.41.1

postgresql12-server-12.14-150200.8.41.1

postgresql12-server-debuginfo-12.14-150200.8.41.1

postgresql12-server-devel-12.14-150200.8.41.1

postgresql12-server-devel-debuginfo-12.14-150200.8.41.1

postgresql12-test-12.14-150200.8.41.1

- openSUSE Leap 15.4...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2022-41862.html

https://bugzilla.suse.com/1208102

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2023:0450-1
Rating: important
Affected Products: SUSE Enterprise Storage 7 SUSE Enterprise Storage 7.1 SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS SUSE Linux Enterprise Server 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP3-LTSS SUSE Linux Enterprise Server for SAP 15-SP2 SUSE Linux Enterprise Server for SAP 15-SP3 openSUSE Leap 15.4

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here