SUSE-SU-2024:4173-1: important: Security update for postgresql, postgresql16, postgresql17

SLE-SECURITY-UPDATES null at suse.de
Wed Dec 4 16:30:35 UTC 2024



# Security update for postgresql, postgresql16, postgresql17

Announcement ID: SUSE-SU-2024:4173-1  
Release Date: 2024-12-04T14:49:16Z  
Rating: important  
References:

  * bsc#1219340
  * bsc#1230423
  * bsc#1233323
  * bsc#1233325
  * bsc#1233326
  * bsc#1233327
  * jsc#PED-11514

  
Cross-References:

  * CVE-2024-10976
  * CVE-2024-10977
  * CVE-2024-10978
  * CVE-2024-10979

  
CVSS scores:

  * CVE-2024-10976 ( SUSE ):  4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
  * CVE-2024-10976 ( NVD ):  4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
  * CVE-2024-10977 ( SUSE ):  3.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
  * CVE-2024-10977 ( NVD ):  3.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
  * CVE-2024-10978 ( SUSE ):  4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
  * CVE-2024-10978 ( NVD ):  4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
  * CVE-2024-10979 ( SUSE ):  8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
  * CVE-2024-10979 ( NVD ):  8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

  
Affected Products:

  * Basesystem Module 15-SP5
  * Legacy Module 15-SP5
  * openSUSE Leap 15.3
  * openSUSE Leap 15.4
  * openSUSE Leap 15.5
  * Server Applications Module 15-SP5
  * SUSE Enterprise Storage 7.1
  * SUSE Linux Enterprise Desktop 15 SP4 LTSS
  * SUSE Linux Enterprise Desktop 15 SP5
  * SUSE Linux Enterprise High Performance Computing 15 SP2
  * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
  * SUSE Linux Enterprise High Performance Computing 15 SP3
  * SUSE Linux Enterprise High Performance Computing 15 SP4
  * SUSE Linux Enterprise High Performance Computing 15 SP5
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4
  * SUSE Linux Enterprise Micro 5.5
  * SUSE Linux Enterprise Real Time 15 SP5
  * SUSE Linux Enterprise Server 15 SP2
  * SUSE Linux Enterprise Server 15 SP2 LTSS
  * SUSE Linux Enterprise Server 15 SP3
  * SUSE Linux Enterprise Server 15 SP3 LTSS
  * SUSE Linux Enterprise Server 15 SP4
  * SUSE Linux Enterprise Server 15 SP4 LTSS
  * SUSE Linux Enterprise Server 15 SP5
  * SUSE Linux Enterprise Server for SAP Applications 15 SP2
  * SUSE Linux Enterprise Server for SAP Applications 15 SP3
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4
  * SUSE Linux Enterprise Server for SAP Applications 15 SP5
  * SUSE Manager Proxy 4.3
  * SUSE Manager Retail Branch Server 4.3
  * SUSE Manager Server 4.3
  * SUSE Package Hub 15 15-SP5

  
  
An update that solves four vulnerabilities, contains one feature and has two
security fixes can now be installed.

## Description:

This update for postgresql, postgresql16, postgresql17 fixes the following
issues:

This update ships postgresql17 , and fixes security issues with postgresql16:

  * bsc#1230423: Relax the dependency of extensions on the server version from
    exact major.minor to greater or equal, after Tom Lane confirmed on the
    PostgreSQL packagers list that ABI stability is being taken care of between
    minor releases.

  * bsc#1219340: The last fix was not correct. Improve it by removing the
    dependency again and call fillup only if it is installed.

postgresql16 was updated to 16.6: * Repair ABI break for extensions that work
with struct ResultRelInfo. * Restore functionality of ALTER {ROLE|DATABASE} SET
role. * Fix cases where a logical replication slot's restart_lsn could go
backwards. * Avoid deleting still-needed WAL files during pg_rewind. * Fix race
conditions associated with dropping shared statistics entries. * Count index
scans in contrib/bloom indexes in the statistics views, such as the
pg_stat_user_indexes.idx_scan counter. * Fix crash when checking to see if an
index's opclass options have changed. * Avoid assertion failure caused by
disconnected NFA sub-graphs in regular expression parsing. *
https://www.postgresql.org/docs/release/16.6/

postgresql16 was updated to 16.5:

  * CVE-2024-10976, bsc#1233323: Ensure cached plans are marked as dependent on
    the calling role when RLS applies to a non-top-level table reference.
  * CVE-2024-10977, bsc#1233325: Make libpq discard error messages received
    during SSL or GSS protocol negotiation.
  * CVE-2024-10978, bsc#1233326: Fix unintended interactions between SET SESSION
    AUTHORIZATION and SET ROLE
  * CVE-2024-10979, bsc#1233327: Prevent trusted PL/Perl code from changing
    environment variables.
  * https://www.postgresql.org/about/news/p-2955/
  * https://www.postgresql.org/docs/release/16.5/

  * Don't build the libs and mini flavor anymore to hand over to PostgreSQL 17.

  * https://www.postgresql.org/about/news/p-2910/

postgresql17 is shipped in version 17.2:

  * CVE-2024-10976, bsc#1233323: Ensure cached plans are marked as dependent on
    the calling role when RLS applies to a non-top-level table reference.
  * CVE-2024-10977, bsc#1233325: Make libpq discard error messages received
    during SSL or GSS protocol negotiation.
  * CVE-2024-10978, bsc#1233326: Fix unintended interactions between SET SESSION
    AUTHORIZATION and SET ROLE
  * CVE-2024-10979, bsc#1233327: Prevent trusted PL/Perl code from changing
    environment variables.
  * https://www.postgresql.org/about/news/p-2955/
  * https://www.postgresql.org/docs/release/17.1/
  * https://www.postgresql.org/docs/release/17.2/

Upgrade to 17.2:

  * Repair ABI break for extensions that work with struct ResultRelInfo.
  * Restore functionality of ALTER {ROLE|DATABASE} SET role.
  * Fix cases where a logical replication slot's restart_lsn could go backwards.
  * Avoid deleting still-needed WAL files during pg_rewind.
  * Fix race conditions associated with dropping shared statistics entries.
  * Count index scans in contrib/bloom indexes in the statistics views, such as
    the pg_stat_user_indexes.idx_scan counter.
  * Fix crash when checking to see if an index's opclass options have changed.
  * Avoid assertion failure caused by disconnected NFA sub-graphs in regular
    expression parsing.

Upgrade to 17.0:

  * New memory management system for VACUUM, which reduces memory consumption
    and can improve overall vacuuming performance.
  * New SQL/JSON capabilities, including constructors, identity functions, and
    the JSON_TABLE() function, which converts JSON data into a table
    representation.
  * Various query performance improvements, including for sequential reads using
    streaming I/O, write throughput under high concurrency, and searches over
    multiple values in a btree index.
  * Logical replication enhancements, including:
  * Failover control
  * pg_createsubscriber, a utility that creates logical replicas from physical
    standbys
  * pg_upgrade now preserves replication slots on both publishers and
    subscribers
  * New client-side connection option, sslnegotiation=direct, that performs a
    direct TLS handshake to avoid a round-trip negotiation.
  * pg_basebackup now supports incremental backup.
  * COPY adds a new option, ON_ERROR ignore, that allows a copy operation to
    continue in the event of an error.
  * https://www.postgresql.org/about/news/p-2936/
  * https://www.postgresql.org/docs/17/release-17.html

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".  
Alternatively you can run the command listed for your product:

  * openSUSE Leap 15.3  
    zypper in -t patch SUSE-2024-4173=1

  * openSUSE Leap 15.4  
    zypper in -t patch SUSE-2024-4173=1

  * openSUSE Leap 15.5  
    zypper in -t patch openSUSE-SLE-15.5-2024-4173=1 SUSE-2024-4173=1

  * Basesystem Module 15-SP5  
    zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2024-4173=1

  * Legacy Module 15-SP5  
    zypper in -t patch SUSE-SLE-Module-Legacy-15-SP5-2024-4173=1

  * SUSE Package Hub 15 15-SP5  
    zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2024-4173=1

  * Server Applications Module 15-SP5  
    zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP5-2024-4173=1

  * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-4173=1

  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-4173=1

  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2024-4173=1

  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2024-4173=1

  * SUSE Linux Enterprise Desktop 15 SP4 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLED-15-SP4-LTSS-2024-4173=1

  * SUSE Linux Enterprise Server 15 SP2 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-4173=1

  * SUSE Linux Enterprise Server 15 SP3 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-4173=1

  * SUSE Linux Enterprise Server 15 SP4 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2024-4173=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP2  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-4173=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP3  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-4173=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP4  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2024-4173=1

  * SUSE Manager Proxy 4.3  
    zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2024-4173=1

  * SUSE Manager Retail Branch Server 4.3  
    zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-
Server-4.3-2024-4173=1

  * SUSE Manager Server 4.3  
    zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2024-4173=1

  * SUSE Enterprise Storage 7.1  
    zypper in -t patch SUSE-Storage-7.1-2024-4173=1

## Package List:

  * openSUSE Leap 15.3 (noarch)
    * postgresql-17-150300.10.27.1
    * postgresql-llvmjit-17-150300.10.27.1
    * postgresql-contrib-17-150300.10.27.1
    * postgresql-server-17-150300.10.27.1
    * postgresql-llvmjit-devel-17-150300.10.27.1
    * postgresql-test-17-150300.10.27.1
    * postgresql-server-devel-17-150300.10.27.1
    * postgresql-pltcl-17-150300.10.27.1
    * postgresql-devel-17-150300.10.27.1
    * postgresql-plperl-17-150300.10.27.1
    * postgresql-plpython-17-150300.10.27.1
    * postgresql-docs-17-150300.10.27.1
  * openSUSE Leap 15.4 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-llvmjit-devel-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-llvmjit-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-test-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * openSUSE Leap 15.5 (noarch)
    * postgresql-devel-17-150500.10.9.1
    * postgresql-llvmjit-17-150500.10.9.1
    * postgresql-docs-17-150500.10.9.1
    * postgresql-plperl-17-150500.10.9.1
    * postgresql-plpython-17-150500.10.9.1
    * postgresql-server-devel-17-150500.10.9.1
    * postgresql-server-17-150500.10.9.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-llvmjit-devel-17-150500.10.9.1
    * postgresql-contrib-17-150500.10.9.1
    * postgresql-17-150500.10.9.1
    * postgresql-test-17-150500.10.9.1
    * postgresql-pltcl-17-150500.10.9.1
    * postgresql17-docs-17.2-150200.5.5.1
  * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql17-contrib-17.2-150200.5.5.1
    * postgresql17-devel-debuginfo-17.2-150200.5.5.1
    * postgresql17-llvmjit-debuginfo-17.2-150200.5.5.1
    * postgresql17-test-17.2-150200.5.5.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql17-llvmjit-17.2-150200.5.5.1
    * postgresql16-llvmjit-debuginfo-16.6-150200.5.21.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql17-llvmjit-devel-17.2-150200.5.5.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql17-server-devel-17.2-150200.5.5.1
    * postgresql17-pltcl-debuginfo-17.2-150200.5.5.1
    * postgresql16-llvmjit-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql17-17.2-150200.5.5.1
    * postgresql17-plperl-debuginfo-17.2-150200.5.5.1
    * postgresql17-plperl-17.2-150200.5.5.1
    * postgresql16-server-16.6-150200.5.21.1
    * postgresql17-server-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql16-test-16.6-150200.5.21.1
    * postgresql17-plpython-debuginfo-17.2-150200.5.5.1
    * postgresql16-llvmjit-devel-16.6-150200.5.21.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql17-devel-17.2-150200.5.5.1
    * postgresql17-pltcl-17.2-150200.5.5.1
    * postgresql17-server-debuginfo-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql17-server-devel-debuginfo-17.2-150200.5.5.1
    * postgresql17-contrib-debuginfo-17.2-150200.5.5.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-plpython-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * openSUSE Leap 15.5 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
    * libecpg6-32bit-debuginfo-17.2-150200.5.5.1
    * libecpg6-32bit-17.2-150200.5.5.1
  * Basesystem Module 15-SP5 (aarch64 ppc64le s390x x86_64)
    * postgresql17-17.2-150200.5.5.1
    * libpq5-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * Basesystem Module 15-SP5 (noarch)
    * postgresql-17-150500.10.9.1
  * Basesystem Module 15-SP5 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * Legacy Module 15-SP5 (noarch)
    * postgresql-llvmjit-17-150500.10.9.1
    * postgresql-llvmjit-devel-17-150500.10.9.1
  * SUSE Package Hub 15 15-SP5 (noarch)
    * postgresql-devel-17-150500.10.9.1
    * postgresql-llvmjit-17-150500.10.9.1
    * postgresql-docs-17-150500.10.9.1
    * postgresql-plperl-17-150500.10.9.1
    * postgresql-plpython-17-150500.10.9.1
    * postgresql-server-devel-17-150500.10.9.1
    * postgresql-server-17-150500.10.9.1
    * postgresql-llvmjit-devel-17-150500.10.9.1
    * postgresql-contrib-17-150500.10.9.1
    * postgresql-17-150500.10.9.1
    * postgresql-test-17-150500.10.9.1
    * postgresql-pltcl-17-150500.10.9.1
  * SUSE Package Hub 15 15-SP5 (aarch64 ppc64le s390x x86_64)
    * postgresql16-llvmjit-devel-16.6-150200.5.21.1
    * postgresql17-llvmjit-debuginfo-17.2-150200.5.5.1
    * postgresql17-test-17.2-150200.5.5.1
    * postgresql17-llvmjit-17.2-150200.5.5.1
    * postgresql16-llvmjit-debuginfo-16.6-150200.5.21.1
    * postgresql17-llvmjit-devel-17.2-150200.5.5.1
    * postgresql16-test-16.6-150200.5.21.1
    * postgresql16-llvmjit-16.6-150200.5.21.1
  * Server Applications Module 15-SP5 (aarch64 ppc64le s390x x86_64)
    * postgresql17-contrib-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql17-devel-debuginfo-17.2-150200.5.5.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql17-server-devel-17.2-150200.5.5.1
    * postgresql17-pltcl-debuginfo-17.2-150200.5.5.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql17-plperl-debuginfo-17.2-150200.5.5.1
    * postgresql17-plperl-17.2-150200.5.5.1
    * postgresql16-server-16.6-150200.5.21.1
    * postgresql17-server-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql17-plpython-debuginfo-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql17-devel-17.2-150200.5.5.1
    * postgresql17-pltcl-17.2-150200.5.5.1
    * postgresql17-server-debuginfo-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql17-server-devel-debuginfo-17.2-150200.5.5.1
    * postgresql17-contrib-debuginfo-17.2-150200.5.5.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-plpython-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * Server Applications Module 15-SP5 (noarch)
    * postgresql-devel-17-150500.10.9.1
    * postgresql-docs-17-150500.10.9.1
    * postgresql-plperl-17-150500.10.9.1
    * postgresql-plpython-17-150500.10.9.1
    * postgresql-server-devel-17-150500.10.9.1
    * postgresql-server-17-150500.10.9.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-contrib-17-150500.10.9.1
    * postgresql-pltcl-17-150500.10.9.1
    * postgresql17-docs-17.2-150200.5.5.1
  * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS (noarch)
    * postgresql-server-17-150200.4.30.1
    * postgresql-17-150200.4.30.1
    * postgresql-contrib-17-150200.4.30.1
    * postgresql-plpython-17-150200.4.30.1
    * postgresql-devel-17-150200.4.30.1
    * postgresql-plperl-17-150200.4.30.1
    * postgresql-pltcl-17-150200.4.30.1
    * postgresql-server-devel-17-150200.4.30.1
    * postgresql-docs-17-150200.4.30.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64
    x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch)
    * postgresql-17-150300.10.27.1
    * postgresql-contrib-17-150300.10.27.1
    * postgresql-server-17-150300.10.27.1
    * postgresql-server-devel-17-150300.10.27.1
    * postgresql-pltcl-17-150300.10.27.1
    * postgresql-devel-17-150300.10.27.1
    * postgresql-plperl-17-150300.10.27.1
    * postgresql-plpython-17-150300.10.27.1
    * postgresql-docs-17-150300.10.27.1
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64
    x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-llvmjit-devel-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-llvmjit-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64
    x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-llvmjit-devel-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-llvmjit-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * SUSE Linux Enterprise Desktop 15 SP4 LTSS (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * postgresql16-16.6-150200.5.21.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * SUSE Linux Enterprise Desktop 15 SP4 LTSS (noarch)
    * postgresql-17-150400.4.18.1
  * SUSE Linux Enterprise Server 15 SP2 LTSS (noarch)
    * postgresql-server-17-150200.4.30.1
    * postgresql-17-150200.4.30.1
    * postgresql-contrib-17-150200.4.30.1
    * postgresql-plpython-17-150200.4.30.1
    * postgresql-devel-17-150200.4.30.1
    * postgresql-plperl-17-150200.4.30.1
    * postgresql-pltcl-17-150200.4.30.1
    * postgresql-server-devel-17-150200.4.30.1
    * postgresql-docs-17-150200.4.30.1
  * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * SUSE Linux Enterprise Server 15 SP3 LTSS (noarch)
    * postgresql-17-150300.10.27.1
    * postgresql-contrib-17-150300.10.27.1
    * postgresql-server-17-150300.10.27.1
    * postgresql-server-devel-17-150300.10.27.1
    * postgresql-pltcl-17-150300.10.27.1
    * postgresql-devel-17-150300.10.27.1
    * postgresql-plperl-17-150300.10.27.1
    * postgresql-plpython-17-150300.10.27.1
    * postgresql-docs-17-150300.10.27.1
  * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-llvmjit-devel-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-llvmjit-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Linux Enterprise Server 15 SP4 LTSS (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (noarch)
    * postgresql-server-17-150200.4.30.1
    * postgresql-17-150200.4.30.1
    * postgresql-contrib-17-150200.4.30.1
    * postgresql-plpython-17-150200.4.30.1
    * postgresql-devel-17-150200.4.30.1
    * postgresql-plperl-17-150200.4.30.1
    * postgresql-pltcl-17-150200.4.30.1
    * postgresql-server-devel-17-150200.4.30.1
    * postgresql-docs-17-150200.4.30.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch)
    * postgresql-17-150300.10.27.1
    * postgresql-contrib-17-150300.10.27.1
    * postgresql-server-17-150300.10.27.1
    * postgresql-server-devel-17-150300.10.27.1
    * postgresql-pltcl-17-150300.10.27.1
    * postgresql-devel-17-150300.10.27.1
    * postgresql-plperl-17-150300.10.27.1
    * postgresql-plpython-17-150300.10.27.1
    * postgresql-docs-17-150300.10.27.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-llvmjit-devel-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-llvmjit-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * SUSE Manager Proxy 4.3 (x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * libpq5-32bit-17.2-150200.5.5.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Manager Proxy 4.3 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Manager Retail Branch Server 4.3 (x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * libpq5-32bit-17.2-150200.5.5.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Manager Retail Branch Server 4.3 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Manager Server 4.3 (ppc64le s390x x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql16-plperl-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql16-16.6-150200.5.21.1
    * postgresql16-server-devel-16.6-150200.5.21.1
    * postgresql16-pltcl-debuginfo-16.6-150200.5.21.1
    * postgresql16-server-16.6-150200.5.21.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-server-debuginfo-16.6-150200.5.21.1
    * postgresql16-contrib-16.6-150200.5.21.1
    * postgresql16-server-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-debugsource-16.6-150200.5.21.1
    * postgresql16-plpython-16.6-150200.5.21.1
    * postgresql16-pltcl-16.6-150200.5.21.1
    * postgresql16-devel-debuginfo-16.6-150200.5.21.1
    * postgresql16-plperl-16.6-150200.5.21.1
    * postgresql16-devel-16.6-150200.5.21.1
    * postgresql16-plpython-debuginfo-16.6-150200.5.21.1
  * SUSE Manager Server 4.3 (noarch)
    * postgresql-plperl-17-150400.4.18.1
    * postgresql-plpython-17-150400.4.18.1
    * postgresql-server-17-150400.4.18.1
    * postgresql-contrib-17-150400.4.18.1
    * postgresql17-docs-17.2-150200.5.5.1
    * postgresql-server-devel-17-150400.4.18.1
    * postgresql-docs-17-150400.4.18.1
    * postgresql16-docs-16.6-150200.5.21.1
    * postgresql-devel-17-150400.4.18.1
    * postgresql-pltcl-17-150400.4.18.1
    * postgresql-17-150400.4.18.1
  * SUSE Manager Server 4.3 (s390x)
    * postgresql17-17.2-150200.5.5.1
    * postgresql17-contrib-17.2-150200.5.5.1
    * postgresql17-plperl-debuginfo-17.2-150200.5.5.1
    * postgresql17-devel-debuginfo-17.2-150200.5.5.1
    * postgresql17-plperl-17.2-150200.5.5.1
    * postgresql17-plpython-debuginfo-17.2-150200.5.5.1
    * postgresql17-server-devel-debuginfo-17.2-150200.5.5.1
    * postgresql17-server-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * postgresql17-contrib-debuginfo-17.2-150200.5.5.1
    * postgresql17-devel-17.2-150200.5.5.1
    * postgresql17-pltcl-17.2-150200.5.5.1
    * postgresql17-server-debuginfo-17.2-150200.5.5.1
    * postgresql17-server-devel-17.2-150200.5.5.1
    * postgresql17-plpython-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * postgresql17-pltcl-debuginfo-17.2-150200.5.5.1
  * SUSE Manager Server 4.3 (x86_64)
    * libpq5-32bit-17.2-150200.5.5.1
    * libpq5-32bit-debuginfo-17.2-150200.5.5.1
  * SUSE Enterprise Storage 7.1 (aarch64 x86_64)
    * libpq5-17.2-150200.5.5.1
    * postgresql17-debugsource-17.2-150200.5.5.1
    * libpq5-debuginfo-17.2-150200.5.5.1
    * postgresql16-debuginfo-16.6-150200.5.21.1
    * libecpg6-debuginfo-17.2-150200.5.5.1
    * postgresql17-debuginfo-17.2-150200.5.5.1
    * libecpg6-17.2-150200.5.5.1
    * postgresql16-debugsource-16.6-150200.5.21.1
  * SUSE Enterprise Storage 7.1 (noarch)
    * postgresql-17-150300.10.27.1
    * postgresql-contrib-17-150300.10.27.1
    * postgresql-server-17-150300.10.27.1
    * postgresql-server-devel-17-150300.10.27.1
    * postgresql-pltcl-17-150300.10.27.1
    * postgresql-devel-17-150300.10.27.1
    * postgresql-plperl-17-150300.10.27.1
    * postgresql-plpython-17-150300.10.27.1
    * postgresql-docs-17-150300.10.27.1

## References:

  * https://www.suse.com/security/cve/CVE-2024-10976.html
  * https://www.suse.com/security/cve/CVE-2024-10977.html
  * https://www.suse.com/security/cve/CVE-2024-10978.html
  * https://www.suse.com/security/cve/CVE-2024-10979.html
  * https://bugzilla.suse.com/show_bug.cgi?id=1219340
  * https://bugzilla.suse.com/show_bug.cgi?id=1230423
  * https://bugzilla.suse.com/show_bug.cgi?id=1233323
  * https://bugzilla.suse.com/show_bug.cgi?id=1233325
  * https://bugzilla.suse.com/show_bug.cgi?id=1233326
  * https://bugzilla.suse.com/show_bug.cgi?id=1233327
  * https://jira.suse.com/browse/PED-11514

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-security-updates/attachments/20241204/19adfe58/attachment.htm>


More information about the sle-security-updates mailing list