Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:0990 - Security Advisory
Issued:
2024-02-26
Updated:
2024-02-26

RHSA-2024:0990 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: rh-postgresql12-postgresql security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for rh-postgresql12-postgresql is now available for Red Hat Software Collections.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL (CVE-2024-0985)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

If the postgresql service is running, it will be automatically restarted after installing this update.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le
  • Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7 x86_64

Fixes

  • BZ - 2263384 - CVE-2024-0985 postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL

CVEs

  • CVE-2024-0985

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Software Collections (for RHEL Server) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.18-1.el7.src.rpm SHA-256: 291639af23291eaaa156d3c391aaaa0f5edec71e5ff0590ded560bb0ab2e3fc8
x86_64
rh-postgresql12-postgresql-12.18-1.el7.x86_64.rpm SHA-256: aa731d3287ebb4e0d5c573b4c6d4d6d9a54112c736a9ff2091cf03acd51278d0
rh-postgresql12-postgresql-contrib-12.18-1.el7.x86_64.rpm SHA-256: 14ecf196000086ed211d3d3d38b169e749fc58d38df612b682afc7a88e888172
rh-postgresql12-postgresql-contrib-syspaths-12.18-1.el7.x86_64.rpm SHA-256: 3389378a631492c06bbfe96b6e794ba79af14c97f1c04f6e2d1f1934def956b0
rh-postgresql12-postgresql-debuginfo-12.18-1.el7.x86_64.rpm SHA-256: 5bffdf865308857612ddd56f2af13533bc39c3a4d0e6b8e2727e3bfdbe7b4587
rh-postgresql12-postgresql-devel-12.18-1.el7.x86_64.rpm SHA-256: d0e9ded04eeddddf92b5967dc47e0bcede24ef61e2722389867d0565dc86e500
rh-postgresql12-postgresql-docs-12.18-1.el7.x86_64.rpm SHA-256: ec95f36ac1448612899bf093d8883f777d0dd5e8e4b65c2b3c1bcfff1461867d
rh-postgresql12-postgresql-libs-12.18-1.el7.x86_64.rpm SHA-256: b0324b4746ab05a519aaed57eb485bf2a69e4d09b7a9fcf5a86f0f139e4a63a5
rh-postgresql12-postgresql-plperl-12.18-1.el7.x86_64.rpm SHA-256: 464b411e8e2fb0ba5e3f3d5f6ec567c3573c46e7c7abebb8c92d1fd91c8e1202
rh-postgresql12-postgresql-plpython-12.18-1.el7.x86_64.rpm SHA-256: b0ba980f402071426876c7011268d79c1c49cb5617feaed5f4809eca219802b4
rh-postgresql12-postgresql-pltcl-12.18-1.el7.x86_64.rpm SHA-256: 6066f213528ef65b60bc917e935cd0f61336cf710f766322b7af196fbef01668
rh-postgresql12-postgresql-server-12.18-1.el7.x86_64.rpm SHA-256: 00b5dc017a756cb5d7e994f9790d6f65881435df34de6c7b431a66fde3e36a26
rh-postgresql12-postgresql-server-syspaths-12.18-1.el7.x86_64.rpm SHA-256: c7a5db366ecce2eb24e90458c11107a95a6b291ee11c7af6d8891cbbd95df776
rh-postgresql12-postgresql-static-12.18-1.el7.x86_64.rpm SHA-256: 78eede1278b6c9aeb4cba817dbb64139fb138f13bd9f21007fd3503dafb4da68
rh-postgresql12-postgresql-syspaths-12.18-1.el7.x86_64.rpm SHA-256: 441ffba790f3b50f6038204963426219ae65b39588dd3afa302a057c2f97d72e
rh-postgresql12-postgresql-test-12.18-1.el7.x86_64.rpm SHA-256: ae406e2a529eeee8a2d6270502cb5a14304c93a0ce279b683d6f13d9fdbc8366

Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.18-1.el7.src.rpm SHA-256: 291639af23291eaaa156d3c391aaaa0f5edec71e5ff0590ded560bb0ab2e3fc8
s390x
rh-postgresql12-postgresql-12.18-1.el7.s390x.rpm SHA-256: 30875d665efebaea79a178d87357c5df987b6b0f0740a5d7cbcfcb11b8f89df7
rh-postgresql12-postgresql-contrib-12.18-1.el7.s390x.rpm SHA-256: 49b99aca942e3df0776a5b505e354a7abf24c626adb3ddaf48d6643aabb856eb
rh-postgresql12-postgresql-contrib-syspaths-12.18-1.el7.s390x.rpm SHA-256: a8edd531ec456cbca6020ebd34b1855bb311cb52af14be73876e9290adb0eceb
rh-postgresql12-postgresql-debuginfo-12.18-1.el7.s390x.rpm SHA-256: 118c576eb1a78da75c2c046a051453cd412d0d71a63f8361495aae89da05d73b
rh-postgresql12-postgresql-devel-12.18-1.el7.s390x.rpm SHA-256: de5114b1c6e34db95b7b1d112231c2846845daf2f01174c46d523272bb11de86
rh-postgresql12-postgresql-docs-12.18-1.el7.s390x.rpm SHA-256: 23354ff49c4a92b0d14be751175ae7c34b26d12ac29a02c78f2566765b878ee5
rh-postgresql12-postgresql-libs-12.18-1.el7.s390x.rpm SHA-256: 261f66e74544584c37c3bb380006dee2beaec80885eb6bb6af0f5d572b727756
rh-postgresql12-postgresql-plperl-12.18-1.el7.s390x.rpm SHA-256: a00f18a99462981684fa6897840fecf94575f753da14b6397fc2aa651a3bf348
rh-postgresql12-postgresql-plpython-12.18-1.el7.s390x.rpm SHA-256: d96cec124648a68c9bee7c8cc25b9c0b3680c61a36565ba5e2322eb8dadad699
rh-postgresql12-postgresql-pltcl-12.18-1.el7.s390x.rpm SHA-256: 8ec83fbe59e9b803a0644dc693230eb784dee4ac8d68c4764a1b0d567087abd5
rh-postgresql12-postgresql-server-12.18-1.el7.s390x.rpm SHA-256: 6495003e3c02e414280ef3d05a735d2ae20a04d781a23020fffd46f2bf1a3c3f
rh-postgresql12-postgresql-server-syspaths-12.18-1.el7.s390x.rpm SHA-256: 80a24c2f0c3b9d8a8a3ace593308d577495eb5c2cf47833830aeb832cb46470f
rh-postgresql12-postgresql-static-12.18-1.el7.s390x.rpm SHA-256: f88db5561f209e8b1307e8712cd44d752577e6d4d4efe4c35abd3c8da48f9a91
rh-postgresql12-postgresql-syspaths-12.18-1.el7.s390x.rpm SHA-256: 77c26929b1a0d97a913ea648ba355455c754b0a0424d06e460ad5c7745bb15b4
rh-postgresql12-postgresql-test-12.18-1.el7.s390x.rpm SHA-256: 997a1e2b78308e978b91f2216c074799bdcaab4c38d0e9b9e97241aa320e30aa

Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.18-1.el7.src.rpm SHA-256: 291639af23291eaaa156d3c391aaaa0f5edec71e5ff0590ded560bb0ab2e3fc8
ppc64le
rh-postgresql12-postgresql-12.18-1.el7.ppc64le.rpm SHA-256: 780254becf42324c270e50c61e138c5498a014887e07441c05db98a8c607004e
rh-postgresql12-postgresql-contrib-12.18-1.el7.ppc64le.rpm SHA-256: c74592d2214fb901279ba2109dc72686fa84843837015fb4a8879a31a449d73e
rh-postgresql12-postgresql-contrib-syspaths-12.18-1.el7.ppc64le.rpm SHA-256: c01b09cd3110c84d4847e6f24532e08c58478c444e1c007b790190187aa3da9b
rh-postgresql12-postgresql-debuginfo-12.18-1.el7.ppc64le.rpm SHA-256: beca95035a2cdf7fa26a963c7dcfb3b48c23e19f07c740fab3daeda21df718e0
rh-postgresql12-postgresql-devel-12.18-1.el7.ppc64le.rpm SHA-256: 45da85a4ec67babb426c5d6c7c015016e6498ce1b09ab0c4ac9437d3b3cf2ae0
rh-postgresql12-postgresql-docs-12.18-1.el7.ppc64le.rpm SHA-256: b99cb62c8948e2e838c9b79840fc749812b97d190fdb3b532ebf5b117aa5339b
rh-postgresql12-postgresql-libs-12.18-1.el7.ppc64le.rpm SHA-256: 17fbd6ef1018e052a2030e3d8a3e4ceb730ae6a2a8941f8a3f419ccdd28e078d
rh-postgresql12-postgresql-plperl-12.18-1.el7.ppc64le.rpm SHA-256: d91633e511155c502411d8997caf674eb2eb42ee7b8bcc36d362425baade28b8
rh-postgresql12-postgresql-plpython-12.18-1.el7.ppc64le.rpm SHA-256: a5402b1b950f278311b4c1584acf80e1d939f372a528252b22a812d179e7f725
rh-postgresql12-postgresql-pltcl-12.18-1.el7.ppc64le.rpm SHA-256: 618f7665ac5fa6288190a8c462a869c839d72e4a6f9ef4f83eddfaa334faad7d
rh-postgresql12-postgresql-server-12.18-1.el7.ppc64le.rpm SHA-256: 28695af11e7866be9e5f174f1db2d52a6582a7f6a665fd55096d062ab3c969cb
rh-postgresql12-postgresql-server-syspaths-12.18-1.el7.ppc64le.rpm SHA-256: 756d7c27eb6489ebef3ceca85036b239ebbdab7c8e2c704210155f786cb4b234
rh-postgresql12-postgresql-static-12.18-1.el7.ppc64le.rpm SHA-256: a9278792448649a9e5751020aef7e2fa65bcbddad0fe8c78236e038dec579126
rh-postgresql12-postgresql-syspaths-12.18-1.el7.ppc64le.rpm SHA-256: f64123a2c4e40077f15ce072e0089f736e14ac25ded29f446d99171a7c48a869
rh-postgresql12-postgresql-test-12.18-1.el7.ppc64le.rpm SHA-256: 987a251e0bdffcc5bea0a001e342a1761e13a37d319072ea5220e4cccd082aff

Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7

SRPM
rh-postgresql12-postgresql-12.18-1.el7.src.rpm SHA-256: 291639af23291eaaa156d3c391aaaa0f5edec71e5ff0590ded560bb0ab2e3fc8
x86_64
rh-postgresql12-postgresql-12.18-1.el7.x86_64.rpm SHA-256: aa731d3287ebb4e0d5c573b4c6d4d6d9a54112c736a9ff2091cf03acd51278d0
rh-postgresql12-postgresql-contrib-12.18-1.el7.x86_64.rpm SHA-256: 14ecf196000086ed211d3d3d38b169e749fc58d38df612b682afc7a88e888172
rh-postgresql12-postgresql-contrib-syspaths-12.18-1.el7.x86_64.rpm SHA-256: 3389378a631492c06bbfe96b6e794ba79af14c97f1c04f6e2d1f1934def956b0
rh-postgresql12-postgresql-debuginfo-12.18-1.el7.x86_64.rpm SHA-256: 5bffdf865308857612ddd56f2af13533bc39c3a4d0e6b8e2727e3bfdbe7b4587
rh-postgresql12-postgresql-devel-12.18-1.el7.x86_64.rpm SHA-256: d0e9ded04eeddddf92b5967dc47e0bcede24ef61e2722389867d0565dc86e500
rh-postgresql12-postgresql-docs-12.18-1.el7.x86_64.rpm SHA-256: ec95f36ac1448612899bf093d8883f777d0dd5e8e4b65c2b3c1bcfff1461867d
rh-postgresql12-postgresql-libs-12.18-1.el7.x86_64.rpm SHA-256: b0324b4746ab05a519aaed57eb485bf2a69e4d09b7a9fcf5a86f0f139e4a63a5
rh-postgresql12-postgresql-plperl-12.18-1.el7.x86_64.rpm SHA-256: 464b411e8e2fb0ba5e3f3d5f6ec567c3573c46e7c7abebb8c92d1fd91c8e1202
rh-postgresql12-postgresql-plpython-12.18-1.el7.x86_64.rpm SHA-256: b0ba980f402071426876c7011268d79c1c49cb5617feaed5f4809eca219802b4
rh-postgresql12-postgresql-pltcl-12.18-1.el7.x86_64.rpm SHA-256: 6066f213528ef65b60bc917e935cd0f61336cf710f766322b7af196fbef01668
rh-postgresql12-postgresql-server-12.18-1.el7.x86_64.rpm SHA-256: 00b5dc017a756cb5d7e994f9790d6f65881435df34de6c7b431a66fde3e36a26
rh-postgresql12-postgresql-server-syspaths-12.18-1.el7.x86_64.rpm SHA-256: c7a5db366ecce2eb24e90458c11107a95a6b291ee11c7af6d8891cbbd95df776
rh-postgresql12-postgresql-static-12.18-1.el7.x86_64.rpm SHA-256: 78eede1278b6c9aeb4cba817dbb64139fb138f13bd9f21007fd3503dafb4da68
rh-postgresql12-postgresql-syspaths-12.18-1.el7.x86_64.rpm SHA-256: 441ffba790f3b50f6038204963426219ae65b39588dd3afa302a057c2f97d72e
rh-postgresql12-postgresql-test-12.18-1.el7.x86_64.rpm SHA-256: ae406e2a529eeee8a2d6270502cb5a14304c93a0ce279b683d6f13d9fdbc8366

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility