Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:0992 - Security Advisory
Issued:
2024-02-26
Updated:
2024-02-26

RHSA-2024:0992 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: rh-postgresql10-postgresql security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for rh-postgresql10-postgresql is now available for Red Hat Software Collections.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL (CVE-2024-0985)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

If the postgresql service is running, it will be automatically restarted after installing this update.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le
  • Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7 x86_64

Fixes

  • BZ - 2263384 - CVE-2024-0985 postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL

CVEs

  • CVE-2024-0985

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Software Collections (for RHEL Server) 1 for RHEL 7

SRPM
rh-postgresql10-postgresql-10.23-3.el7.src.rpm SHA-256: 61530a5b5291d9aa62e29dc49a833568c476334a67d7c07899ddeec6783e772d
x86_64
rh-postgresql10-postgresql-10.23-3.el7.x86_64.rpm SHA-256: 127da1a9c9ff9086a74b38508b5c9a76f56fab1ef0eda1d33ef59645becb6de1
rh-postgresql10-postgresql-contrib-10.23-3.el7.x86_64.rpm SHA-256: 4c60d2bb13b6ed8e895a8df0a5aaeb39a9321ca17c227f66e273925297266d5c
rh-postgresql10-postgresql-contrib-syspaths-10.23-3.el7.x86_64.rpm SHA-256: 11d480d6bd55d4d7393d829bb03faa25ee75afa2995baca4f146e05e526fb2d4
rh-postgresql10-postgresql-debuginfo-10.23-3.el7.x86_64.rpm SHA-256: bcd5e125f787f9cdaf034a8bceedc1e7b6d36557d77292972de0b73c34ebab81
rh-postgresql10-postgresql-devel-10.23-3.el7.x86_64.rpm SHA-256: 8c67e3cc93df4ac0a26c82d40783a7cb83b3c95fa98af3f0e354878b3654c580
rh-postgresql10-postgresql-docs-10.23-3.el7.x86_64.rpm SHA-256: 7e25e9d9d6af668e0880a53ee9c0f4b09e0614d3aaf08cd022aa88dae3f18da0
rh-postgresql10-postgresql-libs-10.23-3.el7.x86_64.rpm SHA-256: f8ec04293cc9099dfd3945485acba7a2ed041a1e834e254eb399891e57b6fad8
rh-postgresql10-postgresql-plperl-10.23-3.el7.x86_64.rpm SHA-256: aa0cbab7a2c3e7f5c5fb2afe608b833609aab641461ba261c8d25d756ed8eb69
rh-postgresql10-postgresql-plpython-10.23-3.el7.x86_64.rpm SHA-256: bd1f8b7bccecffe25dd158048f4b4f3529499ad12badabb617ca17d390ea32fc
rh-postgresql10-postgresql-pltcl-10.23-3.el7.x86_64.rpm SHA-256: 4ca2318d080427f548a916981be97e8f7cedebfef03b15c77ea2bc584693ebcf
rh-postgresql10-postgresql-server-10.23-3.el7.x86_64.rpm SHA-256: 8e363111a9d0c9416fc246fe901e239b93414c424540f1bc2be010db049a76d0
rh-postgresql10-postgresql-server-syspaths-10.23-3.el7.x86_64.rpm SHA-256: fbd7ad54fe2e5d1e79f036db1ac6f3577a1294a51cf001d0a897315637cb3db8
rh-postgresql10-postgresql-static-10.23-3.el7.x86_64.rpm SHA-256: 340185d1ea1b553beaf46ced6a317d5544edffcad51b2c77cfca69a141650773
rh-postgresql10-postgresql-syspaths-10.23-3.el7.x86_64.rpm SHA-256: 4ff291dbe278304934962c8aa57da0e7b63ae680f6df4de9ec693e7037c87062
rh-postgresql10-postgresql-test-10.23-3.el7.x86_64.rpm SHA-256: d15c89068f1dcb0bf7fa5cc4e09be2a8bc4e2025983520b89fb1f10ec601dede

Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7

SRPM
rh-postgresql10-postgresql-10.23-3.el7.src.rpm SHA-256: 61530a5b5291d9aa62e29dc49a833568c476334a67d7c07899ddeec6783e772d
s390x
rh-postgresql10-postgresql-10.23-3.el7.s390x.rpm SHA-256: 33cb57cfddcd310b1a51ff331c52b442ca6d9a51d1f0369d55c1408ccd927257
rh-postgresql10-postgresql-contrib-10.23-3.el7.s390x.rpm SHA-256: 0a010cd4603bb882ca7286a291118d4e4b0a8439826c7611095e1dbc85fd005f
rh-postgresql10-postgresql-contrib-syspaths-10.23-3.el7.s390x.rpm SHA-256: 35ec00da71f8803257d6721c88acfc3e8bb5df83ec59603b8569fc99030c7cb2
rh-postgresql10-postgresql-debuginfo-10.23-3.el7.s390x.rpm SHA-256: f6ce1cfd4286cfb559b98fb8436332c510cc9520a9ba65167c81298327e0b4d2
rh-postgresql10-postgresql-devel-10.23-3.el7.s390x.rpm SHA-256: 459dd425ec10cdc8b7a59e4a4a9724ebc63ff4d9d6fa0132e4a4b75b2c64da0b
rh-postgresql10-postgresql-docs-10.23-3.el7.s390x.rpm SHA-256: 30e20271ee45ff0741d658b9aca9b511ac1640fd676a028f1e573e1631824851
rh-postgresql10-postgresql-libs-10.23-3.el7.s390x.rpm SHA-256: caa2524c322f2a4a89082a1bed458b85364692f7b7acdb6d46e77c7225e2e2b0
rh-postgresql10-postgresql-plperl-10.23-3.el7.s390x.rpm SHA-256: 495797a6198cb59dea0d975a8a7b300ca0890a96151c7ce6c6ccb20574dcf2a4
rh-postgresql10-postgresql-plpython-10.23-3.el7.s390x.rpm SHA-256: ec9abcfc370a9c5b7160620a6af02a7f71f4e46acc72f4fe5e3cd334798630df
rh-postgresql10-postgresql-pltcl-10.23-3.el7.s390x.rpm SHA-256: ade93c6f4a2d6644f06c94480abe8ee51a6565eb2ea8ab18ebc6ded0e1077725
rh-postgresql10-postgresql-server-10.23-3.el7.s390x.rpm SHA-256: 06ccac77c47c31665e450ba449e0b9af3e3176f0d20f1dbf7abadfbb296ebaa3
rh-postgresql10-postgresql-server-syspaths-10.23-3.el7.s390x.rpm SHA-256: 2c5c926ff192ae998cd0e30f6be6ac02219ef063aca75fcd3e69051c3d902cfa
rh-postgresql10-postgresql-static-10.23-3.el7.s390x.rpm SHA-256: ae5ecfd36b680f97fd071ee7501ca41a1d17c09c0a2898d5efd3f256794876c8
rh-postgresql10-postgresql-syspaths-10.23-3.el7.s390x.rpm SHA-256: a9634b098390d7fc99ec13cbbebeffe4b5a4a4e5602b679b20f7bed9b1beece6
rh-postgresql10-postgresql-test-10.23-3.el7.s390x.rpm SHA-256: 85a47101ba9eff7eacaf4e0670aad87787e125769e6b15b170660064527c0726

Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7

SRPM
rh-postgresql10-postgresql-10.23-3.el7.src.rpm SHA-256: 61530a5b5291d9aa62e29dc49a833568c476334a67d7c07899ddeec6783e772d
ppc64le
rh-postgresql10-postgresql-10.23-3.el7.ppc64le.rpm SHA-256: bc5f95f0d7d9751debe635807249bd488bbaf50f940183b2e2583653d3a5f001
rh-postgresql10-postgresql-contrib-10.23-3.el7.ppc64le.rpm SHA-256: 49cf22aada0871372ad3bdf23b519ce18549a3f675be554a1e4aafd1255c93d8
rh-postgresql10-postgresql-contrib-syspaths-10.23-3.el7.ppc64le.rpm SHA-256: 8e7225f02ca4a4a3d83bed4599f1b7679d1cf7885dc0e7ee1f40e4ab1d23c27b
rh-postgresql10-postgresql-debuginfo-10.23-3.el7.ppc64le.rpm SHA-256: abb5147c71e360d3e214347c5a4910321fdd2a6636c07abcfcee14ba6f461da1
rh-postgresql10-postgresql-devel-10.23-3.el7.ppc64le.rpm SHA-256: 9facc53e5cd6452d35f67ee143d3d0a7707d4c2178df1d93c75ffa5fcc209be7
rh-postgresql10-postgresql-docs-10.23-3.el7.ppc64le.rpm SHA-256: fc65691c5ea9e3a4c802365ffd8c1728dc7773b4c66551eb825b920f0d9d1405
rh-postgresql10-postgresql-libs-10.23-3.el7.ppc64le.rpm SHA-256: ce34cf3ab273f8e315878c5222209a3248a0ac9e5fdc1dab3833fc01d3a2ec54
rh-postgresql10-postgresql-plperl-10.23-3.el7.ppc64le.rpm SHA-256: 2d419b9e43fb52e06f3d8fad91481c515f7477d69d3214a4e276a7dec73a840f
rh-postgresql10-postgresql-plpython-10.23-3.el7.ppc64le.rpm SHA-256: d5f6b3e8f09edde705c76d7762fd3b25bcbf6006d04215557c3b6ff60ff4bcdb
rh-postgresql10-postgresql-pltcl-10.23-3.el7.ppc64le.rpm SHA-256: d7394bca2845076ad0c12bc82b269a1a56d40f479f7bd9d9eabdc6a9a84bbef7
rh-postgresql10-postgresql-server-10.23-3.el7.ppc64le.rpm SHA-256: 23ccf2141a7744767b85870974da857a2989f591f7465ab3a1adacd58b829632
rh-postgresql10-postgresql-server-syspaths-10.23-3.el7.ppc64le.rpm SHA-256: 7951d0132cf7bcd15362981e447d522260dddf7d3325f02f78f119fd93377b0e
rh-postgresql10-postgresql-static-10.23-3.el7.ppc64le.rpm SHA-256: 22b5786c75f0f54f8aba3548db59eae8c808f6a94b4cf9c7dbdda2a94097c478
rh-postgresql10-postgresql-syspaths-10.23-3.el7.ppc64le.rpm SHA-256: f51ab7ee80c033aa8573848b889eae6ad2b788e8f308af817d518c694a4a2a3c
rh-postgresql10-postgresql-test-10.23-3.el7.ppc64le.rpm SHA-256: 6a3c8f5fb83c668f0f45581974383589b0498628650f7f62269a83c5040e66ee

Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7

SRPM
rh-postgresql10-postgresql-10.23-3.el7.src.rpm SHA-256: 61530a5b5291d9aa62e29dc49a833568c476334a67d7c07899ddeec6783e772d
x86_64
rh-postgresql10-postgresql-10.23-3.el7.x86_64.rpm SHA-256: 127da1a9c9ff9086a74b38508b5c9a76f56fab1ef0eda1d33ef59645becb6de1
rh-postgresql10-postgresql-contrib-10.23-3.el7.x86_64.rpm SHA-256: 4c60d2bb13b6ed8e895a8df0a5aaeb39a9321ca17c227f66e273925297266d5c
rh-postgresql10-postgresql-contrib-syspaths-10.23-3.el7.x86_64.rpm SHA-256: 11d480d6bd55d4d7393d829bb03faa25ee75afa2995baca4f146e05e526fb2d4
rh-postgresql10-postgresql-debuginfo-10.23-3.el7.x86_64.rpm SHA-256: bcd5e125f787f9cdaf034a8bceedc1e7b6d36557d77292972de0b73c34ebab81
rh-postgresql10-postgresql-devel-10.23-3.el7.x86_64.rpm SHA-256: 8c67e3cc93df4ac0a26c82d40783a7cb83b3c95fa98af3f0e354878b3654c580
rh-postgresql10-postgresql-docs-10.23-3.el7.x86_64.rpm SHA-256: 7e25e9d9d6af668e0880a53ee9c0f4b09e0614d3aaf08cd022aa88dae3f18da0
rh-postgresql10-postgresql-libs-10.23-3.el7.x86_64.rpm SHA-256: f8ec04293cc9099dfd3945485acba7a2ed041a1e834e254eb399891e57b6fad8
rh-postgresql10-postgresql-plperl-10.23-3.el7.x86_64.rpm SHA-256: aa0cbab7a2c3e7f5c5fb2afe608b833609aab641461ba261c8d25d756ed8eb69
rh-postgresql10-postgresql-plpython-10.23-3.el7.x86_64.rpm SHA-256: bd1f8b7bccecffe25dd158048f4b4f3529499ad12badabb617ca17d390ea32fc
rh-postgresql10-postgresql-pltcl-10.23-3.el7.x86_64.rpm SHA-256: 4ca2318d080427f548a916981be97e8f7cedebfef03b15c77ea2bc584693ebcf
rh-postgresql10-postgresql-server-10.23-3.el7.x86_64.rpm SHA-256: 8e363111a9d0c9416fc246fe901e239b93414c424540f1bc2be010db049a76d0
rh-postgresql10-postgresql-server-syspaths-10.23-3.el7.x86_64.rpm SHA-256: fbd7ad54fe2e5d1e79f036db1ac6f3577a1294a51cf001d0a897315637cb3db8
rh-postgresql10-postgresql-static-10.23-3.el7.x86_64.rpm SHA-256: 340185d1ea1b553beaf46ced6a317d5544edffcad51b2c77cfca69a141650773
rh-postgresql10-postgresql-syspaths-10.23-3.el7.x86_64.rpm SHA-256: 4ff291dbe278304934962c8aa57da0e7b63ae680f6df4de9ec693e7037c87062
rh-postgresql10-postgresql-test-10.23-3.el7.x86_64.rpm SHA-256: d15c89068f1dcb0bf7fa5cc4e09be2a8bc4e2025983520b89fb1f10ec601dede

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility