Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:15057 - Security Advisory
Issued:
2025-09-02
Updated:
2025-09-02

RHSA-2025:15057 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: postgresql:13 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for the postgresql:13 module is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

PostgreSQL is an advanced object-relational database management system (DBMS).

Security Fix(es):

  • postgresql: PostgreSQL executes arbitrary code in restore operation (CVE-2025-8715)
  • postgresql: PostgreSQL code execution in restore operation (CVE-2025-8714)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.4 x86_64

Fixes

  • BZ - 2388551 - CVE-2025-8715 postgresql: PostgreSQL executes arbitrary code in restore operation
  • BZ - 2388553 - CVE-2025-8714 postgresql: PostgreSQL code execution in restore operation

CVEs

  • CVE-2025-8713
  • CVE-2025-8714
  • CVE-2025-8715

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 8.4

SRPM
pgaudit-1.5.0-1.module+el8.4.0+8873+b821c30a.src.rpm SHA-256: 69d37c6427f18ed1bd6d29cb2f54e083fb125c162fcb59a687c67528a2fb08e9
postgres-decoderbufs-0.10.0-2.module+el8.4.0+8873+b821c30a.src.rpm SHA-256: 1afa4d664011737a91d8efe7f3ba1f1f9bd6c8e7c510d867bbd1ff41832fe95a
postgresql-13.22-1.module+el8.4.0+23428+e8cf4671.src.rpm SHA-256: 9a149e541845322d36534ba0f289c50f1fe332e3169cd1ecf571ccd2404304c0
x86_64
pgaudit-1.5.0-1.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: 0ee2cdf7b40988a40a70294764149d58ef44f12b69ac85752465444a5b011340
pgaudit-debuginfo-1.5.0-1.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: ed444ce541962f85a37cae58466a203788f69a184d7dbeec159d7b424ab0ff8c
pgaudit-debugsource-1.5.0-1.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: 3092f6f3bd32f8b30489fed2aad9d9884f77da6872a53d6b183a49b0224e7d91
postgres-decoderbufs-0.10.0-2.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: c2d5f6f1d41fd29098090d75b4927696fc01450d42ae75311c14056e574645c0
postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: 7275a1229edefdcf0df138ea35e317fb9143461c6122cb4c8a3ec2821f5e1b65
postgres-decoderbufs-debugsource-0.10.0-2.module+el8.4.0+8873+b821c30a.x86_64.rpm SHA-256: c7145f0c47def50c037cd2694d408fa03627e7581a1303e8d7ccfb5cf47918e6
postgresql-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: db31c46c95024e2f015c77829aad4ca05ed3ba20ce3e570f4045ddda5a7e8154
postgresql-contrib-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 21730eab18f1c16aac78eef250f1807ad76df135cb2b963546537bcf3d6fe1d1
postgresql-contrib-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: b3fa908fd6dd2f42c588b2ca0b2e5d2c5e0c3fe096e37bae36b74d05abdf439d
postgresql-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: b68fd073edf5a926741c23015e13870ab4267504639191491dc4a4942ab3834c
postgresql-debugsource-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 27089da9813f9896d8a65a1e7e6a9340e25ac43831472a8738440123dc2910d3
postgresql-docs-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 5a9e1d98756defa22cedf29dbcf61ff77607d850b0c2cde81b338689208d9828
postgresql-docs-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: b8166887c14437bb659b49c0654a66124515759a5fba6e4c4af8d0746591927f
postgresql-plperl-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: f5486b78d74fc49b6bc74380f90bd1726b241e26151340d76a5861963abcaa73
postgresql-plperl-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 38021929945f704b8cb3acbc10fdb1adb339d454d853bc53bfe8fe9b649f6c40
postgresql-plpython3-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: c34f4a63660fea4a1a061a4aab5c6aaa248aa4e33c538fc045e7a85262f877fd
postgresql-plpython3-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 254484f9b4c1035f461afd9579e8c039452eb732504d51c139d78fbad8c2c85d
postgresql-pltcl-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 90a97cee10000a51e5da8dbf4bf32ee226cd36f22128981cdcd6116710f28156
postgresql-pltcl-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 68d0c5ce31c769d0aaf6f4f794af2cacffd22ea2504e64242ce304221d8b35df
postgresql-server-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 8ecdc6805d97b2ab11cc8c02d78deaf6695eb230d2a14a3ce550713d4c9f8199
postgresql-server-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: aaa6fc4cfc912896e5472ada3fcc644cdb3e898da7f24ee4e1759121dcf99e4b
postgresql-server-devel-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 12ead3939c13410ff582624e55d5d2817c72ecbc813e006db42a78ee5977654a
postgresql-server-devel-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 677fc73d91bf920c5b8be1987b44ea765ee70c717f3aed12c45697e2d6cb2468
postgresql-static-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: cfa4cd22a3f7932cc5e908a5e8ce4b534566d469b90e9044697d1a60f0862549
postgresql-test-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 4b0067ef2f61ef0a3709514922eadcd0a963092459fa4fc886a8a7f2507fd29c
postgresql-test-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 65c9df9a07fe1b46ea19a5c383dbd589d21382bce2f786423a90e127f07e16c5
postgresql-test-rpm-macros-13.22-1.module+el8.4.0+23428+e8cf4671.noarch.rpm SHA-256: d6fda7976ca7cad6cf96e7d075e5cdbe174cd4fd3c186f5012365d18e2883bc6
postgresql-upgrade-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 625813160558b7b2ed925b21aa11dd43a0598891ffbce13b34c384d5959a8690
postgresql-upgrade-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: ba877f1c09c5dbffba235647899c10036b9d5364e3c8952b95e3efaba17891a2
postgresql-upgrade-devel-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: 05285547360f52114d2c031ca53c598c466ce76ab0841d57a8274a4463fbe4b1
postgresql-upgrade-devel-debuginfo-13.22-1.module+el8.4.0+23428+e8cf4671.x86_64.rpm SHA-256: b1eac5429d2a0f5316be4b14c8c48ba86008297d6cdac6d701c766b15b3baee3

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility