Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:15034 - Security Advisory
Issued:
2025-09-02
Updated:
2025-09-02

RHSA-2025:15034 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: postgresql:12 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for the postgresql:12 module is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: PostgreSQL executes arbitrary code in restore operation (CVE-2025-8715)
  • postgresql: PostgreSQL code execution in restore operation (CVE-2025-8714)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.4 x86_64

Fixes

  • BZ - 2388551 - CVE-2025-8715 postgresql: PostgreSQL executes arbitrary code in restore operation
  • BZ - 2388553 - CVE-2025-8714 postgresql: PostgreSQL code execution in restore operation

CVEs

  • CVE-2025-8714
  • CVE-2025-8715

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 8.4

SRPM
pgaudit-1.4.0-6.module+el8.4.0+11288+c193d6d7.src.rpm SHA-256: b03a38090ec961b4c6fe83ae8e373284f0576a5472251536dfb1d10916b31177
postgres-decoderbufs-0.10.0-2.module+el8.4.0+11288+c193d6d7.src.rpm SHA-256: 4a6ff774095320178b96a836d62d5db488a36d985f86c0df120df6bdffe444e1
postgresql-12.22-1.module+el8.4.0+23436+e3f9c044.2.src.rpm SHA-256: 9398a0aba7617a1aff3171c756d922b0fc9c507138454f464ced6032e84556af
x86_64
pgaudit-1.4.0-6.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: 0bbd0a783d7399c0a70bace3f71bd9bc706d57cfbd5a92355253eac38ef71d64
pgaudit-debuginfo-1.4.0-6.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: 7ec70c2c12b53aa6aef901acc2c48655d7acc11b45db3a5a8728a4eff214a610
pgaudit-debugsource-1.4.0-6.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: efae4253c28d1d3774ef16406da959ed11d8dd45ba769426433fb7433cadee0c
postgres-decoderbufs-0.10.0-2.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: a6b90b09552fcc2cc7778ea384a195d97850282bbab941aa1d37fd4c314d94ac
postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: a30fa22fccb754620843adaba31b89c77e7c757cba5fc3707804b51190dd02ef
postgres-decoderbufs-debugsource-0.10.0-2.module+el8.4.0+11288+c193d6d7.x86_64.rpm SHA-256: 5def5e99e1ff1ae1444788ab565fcd9d0ba1b9bea1a1650c3302fdaca8585ec3
postgresql-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: d646daf0fcf1033e13fdfe453c244e5cb4fbf129fc6208a1f6c83d88531c277e
postgresql-contrib-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: fc2e5e2382c40e6de0d5bf25a67ec9fba1928c730abb8f57c5a7f6c5821698f2
postgresql-contrib-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 2527ed90eabf2211d9c26f62109b6199f540a22d7363337f6964ca9b824cf1f4
postgresql-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 35a25bb366c3ec9505f7395586f2fafc4ddb1989b4c2182d291181820f53a8f4
postgresql-debugsource-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: c160797791325f83367709a5e9094db284da7f7564ca81900b8faa76700e12f0
postgresql-docs-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 7bd080d134dd79311c75e198642522868e277cd5d3c6c02bb5b5ea3f40479486
postgresql-docs-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 93840a433b06808d40642b5c0b0409486c8d019e5ac98dba008b02540a5c7648
postgresql-plperl-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 4b392b591734b9cc4c689d4f94f1da0fbaa2259dbbba615b620e22d491a1ea9f
postgresql-plperl-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 5e29f7dc21343926bd768aae11d15e2907eddfb8f1a25f953daaeb1bee739200
postgresql-plpython3-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 78f6797119756a9081da24de59858e6a7d0e78a838bc854539b99f99a9144517
postgresql-plpython3-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: d565e7ba1b542b81d75fcd6024227c7afd342b7d7026dac266341be44e752f54
postgresql-pltcl-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 25efc50afa2c8ad1e79c05947b289fbc30bb83cbfbd568b80961e745508f0058
postgresql-pltcl-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 8e45a9f4f911673949e86d8e1c0a0de31e2e8b6403acc093160458273469fa55
postgresql-server-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 06af4b06ac767a2b21d83b471958edc817ddb82f9cd6cbc319794731d6886973
postgresql-server-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 8693c42e015543babdf107cabe13a3eae5fb92a7ad589dc540316d1b22fbe986
postgresql-server-devel-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: bcb1dbfe5440487b9012ebe1cc06dfdb1faad365deb500e6e37d30750f6b94b5
postgresql-server-devel-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 919a7701825e583e4ff2942a7f25f81a6a55c50f04e2a6e7ad91417a8d1c8b4e
postgresql-static-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: a2e6adf39e5f454bd91cce711e83bedeae236169c3f8eda775f4e683b3c5f2c7
postgresql-test-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 7e47a1246a96c0e3999ffea45531e39915d233e17d0259facae2397c31dfe4cd
postgresql-test-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 2b3c26a2d031c88156c35b749644b7c0bd0dabbccd0cd0928a3b271b5e5fa8c4
postgresql-test-rpm-macros-12.22-1.module+el8.4.0+23436+e3f9c044.2.noarch.rpm SHA-256: 16c7ebd1681912fa87a5c7bc96ff54ec0a78f00dcbb466b98abc47c26fe668d2
postgresql-upgrade-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 4dd15681eeab07186ccaba67eeaeb85f56a7e186ea0971a6913d2c6ee9588526
postgresql-upgrade-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: e2f287bae6b7e3e1688cd55e4fedaa1a5604181e79cf34fb01aac3ea2a234299
postgresql-upgrade-devel-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: 0cabfec30e2b6ccc904dbf50950fef157b8c8c1b769f99773376ff0b0e81a032
postgresql-upgrade-devel-debuginfo-12.22-1.module+el8.4.0+23436+e3f9c044.2.x86_64.rpm SHA-256: e7bc0a4dfc620ac5c60d3f994830714f32a09d35152e9c05ded4fc5d9ac54240

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility