Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:0458 - Security Advisory
Issued:
2026-01-12
Updated:
2026-01-12

RHSA-2026:0458 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: libpq security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libpq is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers.

Security Fix(es):

  • postgresql: libpq undersizes allocations, via integer wraparound (CVE-2025-12818)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2414826 - CVE-2025-12818 postgresql: libpq undersizes allocations, via integer wraparound

CVEs

  • CVE-2025-12818

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
libpq-13.23-1.el9_7.src.rpm SHA-256: 7653a5e0ed9149076cb95d0e25e0a1953cb75dd2b89545ca9b773e09b267f52f
x86_64
libpq-13.23-1.el9_7.i686.rpm SHA-256: 4398bbcd63d1b0dfebb38547f8ff4b82968335e442f229afb666079682b4a102
libpq-13.23-1.el9_7.x86_64.rpm SHA-256: 36674e762f7e3d5f8e3c0c4b607c8b03eaaa5a830729dd8c8a9c8f8be93f6d60
libpq-debuginfo-13.23-1.el9_7.i686.rpm SHA-256: 2408008c9b186f07aa4634796c782a519989a93c3cc59a825ab0d015fb833ba8
libpq-debuginfo-13.23-1.el9_7.x86_64.rpm SHA-256: 72e3455b9ef87d3dba433ed3f471de82e24a86e832c50372186354ca73523ada
libpq-debugsource-13.23-1.el9_7.i686.rpm SHA-256: b02ba54037fda1477290e72bea1bf0e425c7bb4002de5d1f9096a4702132339c
libpq-debugsource-13.23-1.el9_7.x86_64.rpm SHA-256: 9a7a0a967f4cbd81cb6eb9f986f5fcaa9ab28747331af0063e465823412ede4b
libpq-devel-13.23-1.el9_7.i686.rpm SHA-256: 36cbedd37201a71da57592220649d74084b814728711fe17d6e5a925e6538e15
libpq-devel-13.23-1.el9_7.x86_64.rpm SHA-256: cee41c19f18f9bc97c41da9abb06741db322d5fc8e634d6acd3fe7f251610f83
libpq-devel-debuginfo-13.23-1.el9_7.i686.rpm SHA-256: 5ed6b51833dd3723b1816560bd0295baf340485fd1d8a38e15241724b9f24c84
libpq-devel-debuginfo-13.23-1.el9_7.x86_64.rpm SHA-256: 989898d4b88edf8c4e46d2e853ec71ca38ae95b178e7f0a759e10e2cfac305b7

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
libpq-13.23-1.el9_7.src.rpm SHA-256: 7653a5e0ed9149076cb95d0e25e0a1953cb75dd2b89545ca9b773e09b267f52f
s390x
libpq-13.23-1.el9_7.s390x.rpm SHA-256: d8f25e87368be3a1acad190d15b002060589a852565cac1323a51de4a7847a81
libpq-debuginfo-13.23-1.el9_7.s390x.rpm SHA-256: 7055eac2af01edd509eea767f2496d849f9ca58480719e5f791c7caec59ae404
libpq-debugsource-13.23-1.el9_7.s390x.rpm SHA-256: 818c97acdbad45b5f8463ae409204727066874e564627500b345fa1e66e3012a
libpq-devel-13.23-1.el9_7.s390x.rpm SHA-256: d75b9887a4cb0da123fd4de3131f0b4d3151d6149124fdf313f7701532f552d1
libpq-devel-debuginfo-13.23-1.el9_7.s390x.rpm SHA-256: f4836e9d51074e0405f277745528a7fac8ee608465c911c9edb0a2000e418cba

Red Hat Enterprise Linux for Power, little endian 9

SRPM
libpq-13.23-1.el9_7.src.rpm SHA-256: 7653a5e0ed9149076cb95d0e25e0a1953cb75dd2b89545ca9b773e09b267f52f
ppc64le
libpq-13.23-1.el9_7.ppc64le.rpm SHA-256: 1066fa0e97fbdf5b91afca2ac54a89ed54263638bc07d081fbc000803187d64c
libpq-debuginfo-13.23-1.el9_7.ppc64le.rpm SHA-256: e2edb13f9c253392c9cb51442ee4651d36f6ddd369173a993fa8d7483666b1d2
libpq-debugsource-13.23-1.el9_7.ppc64le.rpm SHA-256: ebf1cc771f81ab8d50b4d4ed33c95d5a162c53a4c6a6521ed7e69d0a620e467c
libpq-devel-13.23-1.el9_7.ppc64le.rpm SHA-256: 50c2c24c6f7f51100b15c127f2782ecdeb0408170343165ef0b71175c6e637d1
libpq-devel-debuginfo-13.23-1.el9_7.ppc64le.rpm SHA-256: 9d92d42816586bdc2019c9b73c0e39f2e76c13b41f849195b4987181452b1f54

Red Hat Enterprise Linux for ARM 64 9

SRPM
libpq-13.23-1.el9_7.src.rpm SHA-256: 7653a5e0ed9149076cb95d0e25e0a1953cb75dd2b89545ca9b773e09b267f52f
aarch64
libpq-13.23-1.el9_7.aarch64.rpm SHA-256: db5dd6b6f6885ff5c349486ae9320de46aecb61ce9648fc88806972317d72acf
libpq-debuginfo-13.23-1.el9_7.aarch64.rpm SHA-256: 6c4b0be3a965ba0452c841538e368e89076d6860b0b59107382a411a87375d91
libpq-debugsource-13.23-1.el9_7.aarch64.rpm SHA-256: 5f5de051dc93fb34c6c6273e405cb80b10239478084476471dd849d49b2c929a
libpq-devel-13.23-1.el9_7.aarch64.rpm SHA-256: a31fa7a1bea0e864a1e070a9257e9aa75b1b6f42b8cdc300de269177e7d07b80
libpq-devel-debuginfo-13.23-1.el9_7.aarch64.rpm SHA-256: fd10af145d750ef0b27e56e5e91318b8124b7db865e98ca0536983b91a3ef647

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility