Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql15 Announcement ID: SUSE-SU-2025:01748-2 Release Date: 2025-06-12T14:50:09Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Legacy Module 15-SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql15 fixes the following issues: Upgrade to 15.13: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/15.13/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Legacy Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Legacy-15-SP7-2025-1748=1 ## Package List: * Legacy Module 15-SP7 (aarch64 ppc64le s390x x86_64) * postgresql15-15.13-150600.16.17.1 * postgresql15-debugsource-15.13-150600.16.17.1 * postgresql15-contrib-15.13-150600.16.17.1 * postgresql15-devel-debuginfo-15.13-150600.16.17.1 * postgresql15-server-15.13-150600.16.17.1 * postgresql15-devel-15.13-150600.16.17.1 * postgresql15-server-debuginfo-15.13-150600.16.17.1 * postgresql15-debuginfo-15.13-150600.16.17.1 * postgresql15-contrib-debuginfo-15.13-150600.16.17.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . The latest update for PostgreSQL 15 resolves CVE-2025-4207. It is crucial to apply this patch to maintain the security andintegrity of your database system.. PostgreSQL Update, SUSE Security, Linux Patch, Encoding Fix, Software Update. . LinuxSecurity.com Team
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql16 Announcement ID: SUSE-SU-2025:01766-2 Release Date: 2025-06-04T13:37:51Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Legacy Module 15-SP7 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Package Hub 15 15-SP7 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql16 fixes the following issues: Upgrade to 16.9: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/16.9/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Legacy Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Legacy-15-SP7-2025-1766=1 * SUSE Package Hub 15 15-SP7 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2025-1766=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2025-1766=1 ## Package List: * Legacy Module 15-SP7 (aarch64 ppc64le s390x x86_64) * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-contrib-debuginfo-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-devel-16.9-150600.16.18.1 * postgresql16-contrib-16.9-150600.16.18.1 * postgresql16-devel-debuginfo-16.9-150600.16.18.1 * SUSE Package Hub 1515-SP7 (aarch64 ppc64le s390x x86_64) * postgresql16-llvmjit-16.9-150600.16.18.1 * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-llvmjit-debuginfo-16.9-150600.16.18.1 * postgresql16-test-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-llvmjit-devel-16.9-150600.16.18.1 * Server Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64) * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-server-debuginfo-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-16.9-150600.16.18.1 * postgresql16-server-16.9-150600.16.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . SUSE's release for postgresql16 addresses several moderate vulnerabilities, enhancing encoding verification. Upgrade advised.. postgresql16 security patch, SUSE Linux update, encoding validation fix. . LinuxSecurity.com Team
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql15 Announcement ID: SUSE-SU-2025:01785-1 Release Date: 2025-05-30T16:11:28Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql15 fixes the following issues: Upgrade to 15.13: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/15.13/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-1785=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-1785=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-1785=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-1785=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-1785=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-1785=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-1785=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-1785=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-1785=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-1785=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-1785=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-1785=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-1785=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-1785=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-1785=1 ## Package List: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) *postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) *postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 *postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 *postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Manager Proxy 4.3 (x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 *postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Manager Proxy 4.3 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Manager Retail Branch Server 4.3 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 *postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Manager Server 4.3 (noarch) * postgresql15-docs-15.13-150200.5.41.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * postgresql15-debuginfo-15.13-150200.5.41.1 * postgresql15-devel-15.13-150200.5.41.1 * postgresql15-plpython-debuginfo-15.13-150200.5.41.1 * postgresql15-server-15.13-150200.5.41.1 * postgresql15-server-debuginfo-15.13-150200.5.41.1 * postgresql15-contrib-debuginfo-15.13-150200.5.41.1 * postgresql15-plpython-15.13-150200.5.41.1 * postgresql15-devel-debuginfo-15.13-150200.5.41.1 * postgresql15-plperl-debuginfo-15.13-150200.5.41.1 * postgresql15-server-devel-15.13-150200.5.41.1 * postgresql15-contrib-15.13-150200.5.41.1 * postgresql15-pltcl-debuginfo-15.13-150200.5.41.1 * postgresql15-debugsource-15.13-150200.5.41.1 * postgresql15-plperl-15.13-150200.5.41.1 * postgresql15-15.13-150200.5.41.1 * postgresql15-pltcl-15.13-150200.5.41.1 * postgresql15-server-devel-debuginfo-15.13-150200.5.41.1 * SUSE Enterprise Storage 7.1 (noarch) * postgresql15-docs-15.13-150200.5.41.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . Addressing CVE-2025-4207 in PostgreSQL 15 improves the overall security posture for SUSE systems and safeguards sensitive data effectively. PostgreSQL 15, SUS Security, Encoding Issues, Database Security. . LinuxSecurity.com Team
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql14 Announcement ID: SUSE-SU-2025:01786-1 Release Date: 2025-05-30T16:12:31Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql14 fixes the following issues: Upgrade to 14.18: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-1786=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -tpatch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-1786=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-1786=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-1786=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-1786=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-1786=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-1786=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-1786=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-1786=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-1786=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-1786=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-1786=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-1786=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 *postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-llvmjit-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-llvmjit-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-llvmjit-devel-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 *postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-llvmjit-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 *postgresql14-llvmjit-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-llvmjit-devel-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Manager Proxy 4.3 (x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Manager Proxy 4.3 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 *postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Manager Retail Branch Server 4.3 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Manager Server 4.3 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 *postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Enterprise Storage 7.1 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) *postgresql14-docs-14.18-150200.5.58.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * postgresql14-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-debuginfo-14.18-150200.5.58.1 * postgresql14-14.18-150200.5.58.1 * postgresql14-pltcl-14.18-150200.5.58.1 * postgresql14-contrib-debuginfo-14.18-150200.5.58.1 * postgresql14-plpython-14.18-150200.5.58.1 * postgresql14-server-devel-14.18-150200.5.58.1 * postgresql14-devel-14.18-150200.5.58.1 * postgresql14-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-pltcl-debuginfo-14.18-150200.5.58.1 * postgresql14-plperl-debuginfo-14.18-150200.5.58.1 * postgresql14-server-14.18-150200.5.58.1 * postgresql14-server-debuginfo-14.18-150200.5.58.1 * postgresql14-server-devel-debuginfo-14.18-150200.5.58.1 * postgresql14-contrib-14.18-150200.5.58.1 * postgresql14-debugsource-14.18-150200.5.58.1 * postgresql14-plperl-14.18-150200.5.58.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (noarch) * postgresql14-docs-14.18-150200.5.58.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . Crucial announcement regarding PostgreSQL 14 resolves a character encoding validation concern, enhancing overall system security and robustness.. PostgreSQL Update, SUSE Security Fix, Encoding Validation Patch. . LinuxSecurity.com Team
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql17 Announcement ID: SUSE-SU-2025:01783-1 Release Date: 2025-05-30T15:37:59Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql17 fixes the following issues: Upgrade to 17.5: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/17.5/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-1783=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-1783=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-1783=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-1783=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-1783=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-1783=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-1783=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-1783=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-1783=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-1783=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-1783=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-1783=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-1783=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-1783=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-1783=1 ## Package List: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) *libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * postgresql17-pltcl-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * postgresql17-plperl-debuginfo-17.5-150200.5.13.1 * postgresql17-devel-debuginfo-17.5-150200.5.13.1 * postgresql17-server-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * postgresql17-server-17.5-150200.5.13.1 * postgresql17-pltcl-debuginfo-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-server-devel-debuginfo-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * postgresql17-contrib-17.5-150200.5.13.1 * postgresql17-plpython-debuginfo-17.5-150200.5.13.1 * postgresql17-plperl-17.5-150200.5.13.1 *postgresql17-devel-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * postgresql17-17.5-150200.5.13.1 * postgresql17-contrib-debuginfo-17.5-150200.5.13.1 * postgresql17-plpython-17.5-150200.5.13.1 * postgresql17-server-devel-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * postgresql17-docs-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * postgresql17-pltcl-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * postgresql17-plperl-debuginfo-17.5-150200.5.13.1 * postgresql17-devel-debuginfo-17.5-150200.5.13.1 * postgresql17-server-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * postgresql17-server-17.5-150200.5.13.1 * postgresql17-pltcl-debuginfo-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-server-devel-debuginfo-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * postgresql17-contrib-17.5-150200.5.13.1 * postgresql17-plpython-debuginfo-17.5-150200.5.13.1 * postgresql17-plperl-17.5-150200.5.13.1 * postgresql17-devel-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * postgresql17-17.5-150200.5.13.1 * postgresql17-contrib-debuginfo-17.5-150200.5.13.1 * postgresql17-plpython-17.5-150200.5.13.1 * postgresql17-server-devel-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * postgresql17-docs-17.5-150200.5.13.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * postgresql17-pltcl-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * postgresql17-plperl-debuginfo-17.5-150200.5.13.1 * postgresql17-devel-debuginfo-17.5-150200.5.13.1 * postgresql17-server-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * postgresql17-server-17.5-150200.5.13.1 * postgresql17-pltcl-debuginfo-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-server-devel-debuginfo-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * postgresql17-contrib-17.5-150200.5.13.1 * postgresql17-plpython-debuginfo-17.5-150200.5.13.1 * postgresql17-plperl-17.5-150200.5.13.1 * postgresql17-devel-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * postgresql17-17.5-150200.5.13.1 * postgresql17-contrib-debuginfo-17.5-150200.5.13.1 * postgresql17-plpython-17.5-150200.5.13.1 * postgresql17-server-devel-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * postgresql17-docs-17.5-150200.5.13.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3(ppc64le x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * postgresql17-pltcl-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * postgresql17-plperl-debuginfo-17.5-150200.5.13.1 * postgresql17-devel-debuginfo-17.5-150200.5.13.1 * postgresql17-server-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * postgresql17-server-17.5-150200.5.13.1 * postgresql17-pltcl-debuginfo-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-server-devel-debuginfo-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * postgresql17-contrib-17.5-150200.5.13.1 * postgresql17-plpython-debuginfo-17.5-150200.5.13.1 * postgresql17-plperl-17.5-150200.5.13.1 * postgresql17-devel-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * postgresql17-17.5-150200.5.13.1 * postgresql17-contrib-debuginfo-17.5-150200.5.13.1 * postgresql17-plpython-17.5-150200.5.13.1 * postgresql17-server-devel-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * postgresql17-docs-17.5-150200.5.13.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (x86_64) *libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Manager Proxy 4.3 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * libpq5-17.5-150200.5.13.1 * libecpg6-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 * SUSE Manager Server 4.3 (s390x) * postgresql17-contrib-debuginfo-17.5-150200.5.13.1 * postgresql17-17.5-150200.5.13.1 * postgresql17-contrib-17.5-150200.5.13.1 * postgresql17-plpython-debuginfo-17.5-150200.5.13.1 * postgresql17-pltcl-17.5-150200.5.13.1 * postgresql17-debuginfo-17.5-150200.5.13.1 * postgresql17-server-debuginfo-17.5-150200.5.13.1 * postgresql17-plpython-17.5-150200.5.13.1 * postgresql17-server-17.5-150200.5.13.1 * postgresql17-plperl-17.5-150200.5.13.1 * postgresql17-pltcl-debuginfo-17.5-150200.5.13.1 * postgresql17-devel-17.5-150200.5.13.1 * postgresql17-server-devel-17.5-150200.5.13.1 * postgresql17-server-devel-debuginfo-17.5-150200.5.13.1 * postgresql17-plperl-debuginfo-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * postgresql17-devel-debuginfo-17.5-150200.5.13.1 * SUSE Manager Server 4.3 (noarch) * postgresql17-docs-17.5-150200.5.13.1 * SUSE Manager Server 4.3 (x86_64) * libpq5-32bit-debuginfo-17.5-150200.5.13.1 * libpq5-32bit-17.5-150200.5.13.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * libecpg6-debuginfo-17.5-150200.5.13.1 *postgresql17-debuginfo-17.5-150200.5.13.1 * libecpg6-17.5-150200.5.13.1 * libpq5-17.5-150200.5.13.1 * postgresql17-debugsource-17.5-150200.5.13.1 * libpq5-debuginfo-17.5-150200.5.13.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . SUSE rolls out updates for postgresql17 tackling a moderate level vulnerability to enhance security measures. Apply the suggested patches immediately.. PostgreSQL Security Patch, SUSE Updates, PostgreSQL 17.5 Fix. . LinuxSecurity.com Team
* bsc#1242931 Cross-References: * CVE-2025-4207 . # Security update for postgresql16 Announcement ID: SUSE-SU-2025:01766-1 Release Date: 2025-05-30T07:45:55Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Basesystem Module 15-SP6 * openSUSE Leap 15.6 * Server Applications Module 15-SP6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Package Hub 15 15-SP6 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql16 fixes the following issues: Upgrade to 16.9: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/16.9/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-1766=1 SUSE-2025-1766=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-1766=1 * SUSE Package Hub 15 15-SP6 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP6-2025-1766=1 * Server Applications Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP6-2025-1766=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-16.9-150600.16.18.1 * postgresql16-plpython-16.9-150600.16.18.1 * postgresql16-llvmjit-16.9-150600.16.18.1 *postgresql16-contrib-debuginfo-16.9-150600.16.18.1 * postgresql16-pltcl-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-server-debuginfo-16.9-150600.16.18.1 * postgresql16-server-16.9-150600.16.18.1 * postgresql16-server-devel-debuginfo-16.9-150600.16.18.1 * postgresql16-llvmjit-debuginfo-16.9-150600.16.18.1 * postgresql16-llvmjit-devel-16.9-150600.16.18.1 * postgresql16-plperl-debuginfo-16.9-150600.16.18.1 * postgresql16-pltcl-debuginfo-16.9-150600.16.18.1 * postgresql16-devel-debuginfo-16.9-150600.16.18.1 * postgresql16-test-16.9-150600.16.18.1 * postgresql16-plperl-16.9-150600.16.18.1 * postgresql16-contrib-16.9-150600.16.18.1 * postgresql16-devel-16.9-150600.16.18.1 * postgresql16-server-devel-16.9-150600.16.18.1 * postgresql16-plpython-debuginfo-16.9-150600.16.18.1 * openSUSE Leap 15.6 (noarch) * postgresql16-docs-16.9-150600.16.18.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-16.9-150600.16.18.1 * SUSE Package Hub 15 15-SP6 (aarch64 ppc64le s390x x86_64) * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-test-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-llvmjit-debuginfo-16.9-150600.16.18.1 * postgresql16-llvmjit-16.9-150600.16.18.1 * Server Applications Module 15-SP6 (aarch64 ppc64le s390x x86_64) * postgresql16-devel-debuginfo-16.9-150600.16.18.1 * postgresql16-debugsource-16.9-150600.16.18.1 * postgresql16-plperl-16.9-150600.16.18.1 * postgresql16-debuginfo-16.9-150600.16.18.1 * postgresql16-server-debuginfo-16.9-150600.16.18.1 * postgresql16-server-16.9-150600.16.18.1 * postgresql16-devel-16.9-150600.16.18.1 * postgresql16-server-devel-debuginfo-16.9-150600.16.18.1 * postgresql16-plpython-16.9-150600.16.18.1 * postgresql16-contrib-debuginfo-16.9-150600.16.18.1 * postgresql16-pltcl-16.9-150600.16.18.1 * postgresql16-server-devel-16.9-150600.16.18.1 * postgresql16-plperl-debuginfo-16.9-150600.16.18.1 * postgresql16-plpython-debuginfo-16.9-150600.16.18.1 * postgresql16-contrib-16.9-150600.16.18.1 * postgresql16-pltcl-debuginfo-16.9-150600.16.18.1 * Server Applications Module 15-SP6 (noarch) * postgresql16-docs-16.9-150600.16.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . This Fedora notice outlines a significant software patch for sqlite3, targeting a decoding vulnerability to improve overall system protection.. PostgreSQL Update, SUSE Security Fix, Encoding Issues, Patch Instructions. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # Security update for postgresql14 Announcement ID: SUSE-SU-2025:01661-1 Release Date: 2025-05-22T16:03:34Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Legacy Module 15-SP6 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Package Hub 15 15-SP6 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql14 fixes the following issues: Upgrade to 14.18: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-1661=1 SUSE-2025-1661=1 * Legacy Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Legacy-15-SP6-2025-1661=1 * SUSE Package Hub 15 15-SP6 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP6-2025-1661=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * postgresql14-test-14.18-150600.16.17.1 * postgresql14-devel-debuginfo-14.18-150600.16.17.1 * postgresql14-server-14.18-150600.16.17.1 * postgresql14-pltcl-14.18-150600.16.17.1 * postgresql14-llvmjit-14.18-150600.16.17.1 * postgresql14-pltcl-debuginfo-14.18-150600.16.17.1 * postgresql14-plpython-debuginfo-14.18-150600.16.17.1 * postgresql14-14.18-150600.16.17.1 *postgresql14-llvmjit-debuginfo-14.18-150600.16.17.1 * postgresql14-server-debuginfo-14.18-150600.16.17.1 * postgresql14-devel-14.18-150600.16.17.1 * postgresql14-server-devel-14.18-150600.16.17.1 * postgresql14-plperl-debuginfo-14.18-150600.16.17.1 * postgresql14-contrib-14.18-150600.16.17.1 * postgresql14-plperl-14.18-150600.16.17.1 * postgresql14-debuginfo-14.18-150600.16.17.1 * postgresql14-debugsource-14.18-150600.16.17.1 * postgresql14-plpython-14.18-150600.16.17.1 * postgresql14-server-devel-debuginfo-14.18-150600.16.17.1 * postgresql14-llvmjit-devel-14.18-150600.16.17.1 * postgresql14-contrib-debuginfo-14.18-150600.16.17.1 * openSUSE Leap 15.6 (noarch) * postgresql14-docs-14.18-150600.16.17.1 * Legacy Module 15-SP6 (aarch64 ppc64le s390x x86_64) * postgresql14-plpython-debuginfo-14.18-150600.16.17.1 * postgresql14-14.18-150600.16.17.1 * postgresql14-contrib-14.18-150600.16.17.1 * postgresql14-plperl-14.18-150600.16.17.1 * postgresql14-plperl-debuginfo-14.18-150600.16.17.1 * postgresql14-devel-debuginfo-14.18-150600.16.17.1 * postgresql14-server-devel-14.18-150600.16.17.1 * postgresql14-debuginfo-14.18-150600.16.17.1 * postgresql14-debugsource-14.18-150600.16.17.1 * postgresql14-server-14.18-150600.16.17.1 * postgresql14-server-debuginfo-14.18-150600.16.17.1 * postgresql14-pltcl-debuginfo-14.18-150600.16.17.1 * postgresql14-plpython-14.18-150600.16.17.1 * postgresql14-server-devel-debuginfo-14.18-150600.16.17.1 * postgresql14-devel-14.18-150600.16.17.1 * postgresql14-contrib-debuginfo-14.18-150600.16.17.1 * postgresql14-pltcl-14.18-150600.16.17.1 * Legacy Module 15-SP6 (noarch) * postgresql14-docs-14.18-150600.16.17.1 * SUSE Package Hub 15 15-SP6 (aarch64 ppc64le s390x x86_64) * postgresql14-test-14.18-150600.16.17.1 * postgresql14-llvmjit-14.18-150600.16.17.1 * postgresql14-debuginfo-14.18-150600.16.17.1 * postgresql14-debugsource-14.18-150600.16.17.1 *postgresql14-llvmjit-debuginfo-14.18-150600.16.17.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . The latest patch for PostgreSQL 14 focuses on enhancing security by resolving medium-level encoding vulnerabilities. Detailed installation guidelines are provided.. postgresql14, openSUSE, security update, patch, encoding issues. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # Security update for postgresql13 Announcement ID: SUSE-SU-2025:01654-1 Release Date: 2025-05-22T10:52:10Z Rating: moderate References: * bsc#1242931 Cross-References: * CVE-2025-4207 CVSS scores: * CVE-2025-4207 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-4207 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * openSUSE Leap 15.6 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql13 fixes the following issues: Upgrade to 13.21: * CVE-2025-4207: Fixed PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation (bsc#1242931) Changelog: https://www.postgresql.org/docs/release/13.21/ ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-1654=1 SUSE-2025-1654=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * postgresql13-llvmjit-13.21-150600.14.8.1 * postgresql13-server-debuginfo-13.21-150600.14.8.1 * postgresql13-contrib-debuginfo-13.21-150600.14.8.1 * postgresql13-server-devel-debuginfo-13.21-150600.14.8.1 * postgresql13-contrib-13.21-150600.14.8.1 * postgresql13-server-13.21-150600.14.8.1 * postgresql13-devel-debuginfo-13.21-150600.14.8.1 * postgresql13-debugsource-13.21-150600.14.8.1 * postgresql13-plperl-debuginfo-13.21-150600.14.8.1 * postgresql13-plpython-debuginfo-13.21-150600.14.8.1 * postgresql13-13.21-150600.14.8.1 * postgresql13-pltcl-debuginfo-13.21-150600.14.8.1 * postgresql13-test-13.21-150600.14.8.1 * postgresql13-debuginfo-13.21-150600.14.8.1 * postgresql13-llvmjit-debuginfo-13.21-150600.14.8.1 *postgresql13-devel-13.21-150600.14.8.1 * postgresql13-llvmjit-devel-13.21-150600.14.8.1 * postgresql13-plperl-13.21-150600.14.8.1 * postgresql13-plpython-13.21-150600.14.8.1 * postgresql13-server-devel-13.21-150600.14.8.1 * postgresql13-pltcl-13.21-150600.14.8.1 * openSUSE Leap 15.6 (noarch) * postgresql13-docs-13.21-150600.14.8.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4207.html * https://bugzilla.suse.com/show_bug.cgi?id=1242931 . A vital security enhancement for postgresql15 tackles a severe data corruption problem, improving both functionality and protection in Ubuntu systems.. PostgreSQL Update, Security Patch, openSUSE Upgrade, Encoding Fix. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.