Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2021:5197 - Security Advisory
Issued:
2021-12-16
Updated:
2021-12-16

RHSA-2021:5197 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: rh-postgresql12-postgresql security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for rh-postgresql12-postgresql is now available for Red Hat Software Collections.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

The following packages have been upgraded to a later upstream version: rh-postgresql12-postgresql (12.9).

Security Fix(es):

  • postgresql: memory disclosure in certain queries (CVE-2021-3677)
  • postgresql: server processes unencrypted bytes from man-in-the-middle (CVE-2021-23214)
  • postgresql: libpq processes unencrypted bytes from man-in-the-middle (CVE-2021-23222)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

If the postgresql service is running, it will be automatically restarted after installing this update.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le
  • Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7 x86_64

Fixes

  • BZ - 2001857 - CVE-2021-3677 postgresql: memory disclosure in certain queries
  • BZ - 2022666 - CVE-2021-23214 postgresql: server processes unencrypted bytes from man-in-the-middle
  • BZ - 2022675 - CVE-2021-23222 postgresql: libpq processes unencrypted bytes from man-in-the-middle

CVEs

  • CVE-2021-3677
  • CVE-2021-23214
  • CVE-2021-23222

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Software Collections (for RHEL Server) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.9-1.el7.src.rpm SHA-256: 5b9f6d4c2f230974ea4a1aafd996323c88e2680abbfc6d148049b10ec0dea016
x86_64
rh-postgresql12-postgresql-12.9-1.el7.x86_64.rpm SHA-256: 55c6a059854999b233e818760b359890697033a7822cec8e2fd79bb94076c846
rh-postgresql12-postgresql-contrib-12.9-1.el7.x86_64.rpm SHA-256: a19401f88af8d48677f7292334a2a8d08424e70a337e5ef776451efbde6cedb9
rh-postgresql12-postgresql-contrib-syspaths-12.9-1.el7.x86_64.rpm SHA-256: 0bc0a2b8d9f75f73770ebfaeb7e1c380402e1680fc17028340a2a34081162c21
rh-postgresql12-postgresql-debuginfo-12.9-1.el7.x86_64.rpm SHA-256: 0ae13e3961fb3696d2dc415d344126d3e82d9f02f9223905a9b37a9617494f6d
rh-postgresql12-postgresql-devel-12.9-1.el7.x86_64.rpm SHA-256: 87f7ad5f50637290ef2d62917c6e84e483ff9df514ce42109e0c57f399ce96e6
rh-postgresql12-postgresql-docs-12.9-1.el7.x86_64.rpm SHA-256: 1304dcbd8a2c47df031f523c747dbbebbea2edf952cec961ea7343fa34a22f7f
rh-postgresql12-postgresql-libs-12.9-1.el7.x86_64.rpm SHA-256: 10147246b57501a42da49d3a10fa786350bbaf20299fe8fc7d020a204096b70d
rh-postgresql12-postgresql-plperl-12.9-1.el7.x86_64.rpm SHA-256: ddc2f0f0dd357bdaa4ddb073ec9795574faae0b754f7b4a589471ad809ecbaf7
rh-postgresql12-postgresql-plpython-12.9-1.el7.x86_64.rpm SHA-256: a7542e0efa3c56468b6b27cf576dec961147ca94458db807ed43ee8b4d75009d
rh-postgresql12-postgresql-pltcl-12.9-1.el7.x86_64.rpm SHA-256: 62cc2a32099800c0c42fded47b58f7b6d8d26f971630010e14613b2fe5675755
rh-postgresql12-postgresql-server-12.9-1.el7.x86_64.rpm SHA-256: a3a894591b1da39539a8a07ae4f4bbb076e47da4e75446525617b9d303bd1889
rh-postgresql12-postgresql-server-syspaths-12.9-1.el7.x86_64.rpm SHA-256: 012136eec66adf53b468a2482ae00f72039d439307f223090a6896d21da8156b
rh-postgresql12-postgresql-static-12.9-1.el7.x86_64.rpm SHA-256: f18845bc6954dc0c7ef5d20689bfc0602e9b0c294529f603be68107e9fce0f9c
rh-postgresql12-postgresql-syspaths-12.9-1.el7.x86_64.rpm SHA-256: b9c4874d1c27fda6d5c07a34afe6457eeafb8ca005ac892d4139f2a62d81517e
rh-postgresql12-postgresql-test-12.9-1.el7.x86_64.rpm SHA-256: 497e869f95c682aa80281fcbdf620fc2c825fa57a0769daac02099b70d6099ff

Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.9-1.el7.src.rpm SHA-256: 5b9f6d4c2f230974ea4a1aafd996323c88e2680abbfc6d148049b10ec0dea016
s390x
rh-postgresql12-postgresql-12.9-1.el7.s390x.rpm SHA-256: d2aaa5168cb29b11de93c4ab74c397d4aa69fdb076875219c67fdcda2bda9545
rh-postgresql12-postgresql-contrib-12.9-1.el7.s390x.rpm SHA-256: b9aba4e440e593e082d43973fae0899d9bbf56efe49f19506fbe450b45bf53e5
rh-postgresql12-postgresql-contrib-syspaths-12.9-1.el7.s390x.rpm SHA-256: 102a6e36cf736b998056b48b702927d1b65429ba318197c142bd96c7da212e58
rh-postgresql12-postgresql-debuginfo-12.9-1.el7.s390x.rpm SHA-256: bc097513402933cfb3cb4268bad0d2f6d24c74787730fd0ac5e63ac1ec9accc8
rh-postgresql12-postgresql-devel-12.9-1.el7.s390x.rpm SHA-256: 38b83605f91f0fed16db93d165d1745c06c0b6d05d93239d06398c67a9201432
rh-postgresql12-postgresql-docs-12.9-1.el7.s390x.rpm SHA-256: d9b9c64b0576e0bd4cd7496bc8993fc67b8958579142b0f61010b4e6b7d7345c
rh-postgresql12-postgresql-libs-12.9-1.el7.s390x.rpm SHA-256: b35cd3e52a897a2cfdceb39527389872346b51cc4ace13685e929f28d37137c6
rh-postgresql12-postgresql-plperl-12.9-1.el7.s390x.rpm SHA-256: 1ead2aafcfa4f702732e7b336a7c9147d5520c71a457222ca78164d8bcb1a7b5
rh-postgresql12-postgresql-plpython-12.9-1.el7.s390x.rpm SHA-256: 9c5f9b74ea9e596117006ce15a4e2051e2402a2dc434d5112d2492dd90ffadc9
rh-postgresql12-postgresql-pltcl-12.9-1.el7.s390x.rpm SHA-256: 13e5fba06b21c6a20524695d200efe84ef60e54d81a18a8cd08b289da6c9ae81
rh-postgresql12-postgresql-server-12.9-1.el7.s390x.rpm SHA-256: 04d849478eb8ba66c633a9183103d72c152df1bf16454d8dda65026b4bbca038
rh-postgresql12-postgresql-server-syspaths-12.9-1.el7.s390x.rpm SHA-256: 6197ef0103f61f5d34c5aed9390894b6149b75df6dee1cc253affd56fc34f128
rh-postgresql12-postgresql-static-12.9-1.el7.s390x.rpm SHA-256: dda8c14ca7fda68edffb58871537173aa8cea70511378be7cd6607aa086fe79a
rh-postgresql12-postgresql-syspaths-12.9-1.el7.s390x.rpm SHA-256: 3d55cb9d3763846c965418560a93c5b0f669d6f27ee4fe08b4d42de13fb9b69d
rh-postgresql12-postgresql-test-12.9-1.el7.s390x.rpm SHA-256: aa821c12b52a3c59bdc3143c0637ecd632735713290c0ad92ca6f67b1ca3a5d6

Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.9-1.el7.src.rpm SHA-256: 5b9f6d4c2f230974ea4a1aafd996323c88e2680abbfc6d148049b10ec0dea016
ppc64le
rh-postgresql12-postgresql-12.9-1.el7.ppc64le.rpm SHA-256: c35b7b5bc7d98ce07f7700ab05faacb027ac55cca283471af08f2a1d28fc4277
rh-postgresql12-postgresql-contrib-12.9-1.el7.ppc64le.rpm SHA-256: 5c957040db550a2121fe0c12d87479b44a5ba37c1446f7d246d385a6d89012d3
rh-postgresql12-postgresql-contrib-syspaths-12.9-1.el7.ppc64le.rpm SHA-256: 9ce02a42c542443eb3e4f5c6686c6b98387c35cbf999aea5a2684b940a2c14f8
rh-postgresql12-postgresql-debuginfo-12.9-1.el7.ppc64le.rpm SHA-256: f11e7dead90a625becee2716b1b7143f1944d533fe77744a39c4ca2c1e593aa8
rh-postgresql12-postgresql-devel-12.9-1.el7.ppc64le.rpm SHA-256: d5700d8589870f6477a96d937200f3fe1ad2e57eecaa5e75d00284799b829d80
rh-postgresql12-postgresql-docs-12.9-1.el7.ppc64le.rpm SHA-256: 569ec3f5b4a489a8977ec08f7b2fb66cb5cf7708b751371c9718ecfd83acbe0e
rh-postgresql12-postgresql-libs-12.9-1.el7.ppc64le.rpm SHA-256: 1086d31c70e6d3ddfcb02aa3ea961673380afa73bb7c592d28dc824f25caa55d
rh-postgresql12-postgresql-plperl-12.9-1.el7.ppc64le.rpm SHA-256: 16d16926e3d47054cdbab51d7ee423dfd12610c339f5f15c0b27cbf454a96136
rh-postgresql12-postgresql-plpython-12.9-1.el7.ppc64le.rpm SHA-256: 3d8b36fac74f7c29fd2e6f1109eca7984e8e6c7186efc7794b3ba71030e0a678
rh-postgresql12-postgresql-pltcl-12.9-1.el7.ppc64le.rpm SHA-256: ce8c939444e9a74c809293372499e9b3ba53d9f129b462b94ab7d100e0dd604a
rh-postgresql12-postgresql-server-12.9-1.el7.ppc64le.rpm SHA-256: 69fe14913ad8604bc1673c6de1caff55dc6c7dd41ef26914b4d10de5a09af41b
rh-postgresql12-postgresql-server-syspaths-12.9-1.el7.ppc64le.rpm SHA-256: d6d3fa4d8dd96315e20542dc1a5e74d1d59c6a4fb8abd38f4850545b4213296b
rh-postgresql12-postgresql-static-12.9-1.el7.ppc64le.rpm SHA-256: b537c2c17348fa4bb0615b00b4a263414408d80b57295898e673b7cce3a485f3
rh-postgresql12-postgresql-syspaths-12.9-1.el7.ppc64le.rpm SHA-256: 1671921e28bae0ddc6856d8edd8f0051b709be1cbd535c0886f64e4fdf508401
rh-postgresql12-postgresql-test-12.9-1.el7.ppc64le.rpm SHA-256: 8d39e83c6ecdf8db13f1310f0a39b13795efed5e519f2e788455266b9e60368d

Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.9-1.el7.src.rpm SHA-256: 5b9f6d4c2f230974ea4a1aafd996323c88e2680abbfc6d148049b10ec0dea016
x86_64
rh-postgresql12-postgresql-12.9-1.el7.x86_64.rpm SHA-256: 55c6a059854999b233e818760b359890697033a7822cec8e2fd79bb94076c846
rh-postgresql12-postgresql-contrib-12.9-1.el7.x86_64.rpm SHA-256: a19401f88af8d48677f7292334a2a8d08424e70a337e5ef776451efbde6cedb9
rh-postgresql12-postgresql-contrib-syspaths-12.9-1.el7.x86_64.rpm SHA-256: 0bc0a2b8d9f75f73770ebfaeb7e1c380402e1680fc17028340a2a34081162c21
rh-postgresql12-postgresql-debuginfo-12.9-1.el7.x86_64.rpm SHA-256: 0ae13e3961fb3696d2dc415d344126d3e82d9f02f9223905a9b37a9617494f6d
rh-postgresql12-postgresql-devel-12.9-1.el7.x86_64.rpm SHA-256: 87f7ad5f50637290ef2d62917c6e84e483ff9df514ce42109e0c57f399ce96e6
rh-postgresql12-postgresql-docs-12.9-1.el7.x86_64.rpm SHA-256: 1304dcbd8a2c47df031f523c747dbbebbea2edf952cec961ea7343fa34a22f7f
rh-postgresql12-postgresql-libs-12.9-1.el7.x86_64.rpm SHA-256: 10147246b57501a42da49d3a10fa786350bbaf20299fe8fc7d020a204096b70d
rh-postgresql12-postgresql-plperl-12.9-1.el7.x86_64.rpm SHA-256: ddc2f0f0dd357bdaa4ddb073ec9795574faae0b754f7b4a589471ad809ecbaf7
rh-postgresql12-postgresql-plpython-12.9-1.el7.x86_64.rpm SHA-256: a7542e0efa3c56468b6b27cf576dec961147ca94458db807ed43ee8b4d75009d
rh-postgresql12-postgresql-pltcl-12.9-1.el7.x86_64.rpm SHA-256: 62cc2a32099800c0c42fded47b58f7b6d8d26f971630010e14613b2fe5675755
rh-postgresql12-postgresql-server-12.9-1.el7.x86_64.rpm SHA-256: a3a894591b1da39539a8a07ae4f4bbb076e47da4e75446525617b9d303bd1889
rh-postgresql12-postgresql-server-syspaths-12.9-1.el7.x86_64.rpm SHA-256: 012136eec66adf53b468a2482ae00f72039d439307f223090a6896d21da8156b
rh-postgresql12-postgresql-static-12.9-1.el7.x86_64.rpm SHA-256: f18845bc6954dc0c7ef5d20689bfc0602e9b0c294529f603be68107e9fce0f9c
rh-postgresql12-postgresql-syspaths-12.9-1.el7.x86_64.rpm SHA-256: b9c4874d1c27fda6d5c07a34afe6457eeafb8ca005ac892d4139f2a62d81517e
rh-postgresql12-postgresql-test-12.9-1.el7.x86_64.rpm SHA-256: 497e869f95c682aa80281fcbdf620fc2c825fa57a0769daac02099b70d6099ff

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility