[ALSA-2026:27741] Important: postgresql security update
Type:
security
Severity:
important
Release date:
2026-06-23
Description:
PostgreSQL is an advanced object-relational database management system (DBMS). Security Fix(es): * postgresql: PostgreSQL: Operating system account hijack via symlink following in pg_basebackup and pg_rewind (CVE-2026-6475) * postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477) * postgresql: PostgreSQL: Credential recovery via covert timing channel in MD5 password comparison (CVE-2026-6478) * postgresql: integer overflow can cause an undersized allocation and an out-of-bounds write (CVE-2026-6473) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 postgresql-upgrade-devel-13.23-3.el9_8.aarch64.rpm 04bea973e8bb347fd9a146d1d5cf25df04f2ae813b6be8698cba13a07fd9061c
aarch64 postgresql-13.23-3.el9_8.aarch64.rpm 08188d5f20527f336e94c9c57019bd987d5c64fe5139c5785fb734114851f0fa
aarch64 postgresql-test-13.23-3.el9_8.aarch64.rpm 2b6c0b3a902c4c1acc125f6c9576b572d84c1c618e0a6750c466c689b62b34a5
aarch64 postgresql-plpython3-13.23-3.el9_8.aarch64.rpm 2f88ca1b660c6f935ddd912946c9fef8a39582b77467e9696bb2fbadc8b03bd0
aarch64 postgresql-plperl-13.23-3.el9_8.aarch64.rpm 452692302cb57450c6f171cb0e8b2192e53c355735aba0108ffbeac4a63e9c70
aarch64 postgresql-docs-13.23-3.el9_8.aarch64.rpm 4ce1e4bff056e56388c905348eb3a71933aa4cdb3224acf19844990e3bb3025f
aarch64 postgresql-server-13.23-3.el9_8.aarch64.rpm 4e1349b910172cd1d1984ca3ed8f85d20d48b52b11d3e0611eb47516357c3dfc
aarch64 postgresql-contrib-13.23-3.el9_8.aarch64.rpm 6ef5eaa9b19107a65e26b7c936d3a80e91f22b10491d5372180e5b89ee516955
aarch64 postgresql-upgrade-13.23-3.el9_8.aarch64.rpm 8ebc031fbb6ea0d600c9c74377e21424565d30767101658f7a03b7bf83dc471e
aarch64 postgresql-pltcl-13.23-3.el9_8.aarch64.rpm 943a0af8499d5c84ea7bc8d39d5cbbf0b47006812d1ee55843dce2b5ff6709ea
aarch64 postgresql-private-devel-13.23-3.el9_8.aarch64.rpm 9a0ba79796d0f80c2fc17fbb6c8846741893a72f6012f49cde7ca4705397b318
aarch64 postgresql-private-libs-13.23-3.el9_8.aarch64.rpm bc22cba38972a47b6ffcc312a7130b71690ef9e9adcbbbaaf6ca97e7fe9db974
aarch64 postgresql-server-devel-13.23-3.el9_8.aarch64.rpm f3c3c431e411058123f1c0c85fbdf9f18c1b0542af8fec22c7c52678b660ee1f
aarch64 postgresql-static-13.23-3.el9_8.aarch64.rpm f7eedc8476869536d7bce08829768b24080c7756f9ef0d25a9fa05ee80518f79
noarch postgresql-test-rpm-macros-13.23-3.el9_8.noarch.rpm f6060fb4be90b694977de0b268823c300ea7bb804cc5da4363f78ccda9909d03
ppc64le postgresql-plpython3-13.23-3.el9_8.ppc64le.rpm 0d50bdf4f3371853b79aac39449eb63d3efe754bed4ac7a85ff93a96327240e7
ppc64le postgresql-docs-13.23-3.el9_8.ppc64le.rpm 1eec289693ac8b3d60706171b315bdb4de07e2aef7d1e0b4bd5b1e45519673b0
ppc64le postgresql-static-13.23-3.el9_8.ppc64le.rpm 37fb3013ae8a7ac264fa3e119dbb5ae77b4c0a9e12ef6727ee99e7987216b1a1
ppc64le postgresql-pltcl-13.23-3.el9_8.ppc64le.rpm 576368bb136494c2ee478c8372dd34daf6f63676d995d5851546f4a114cdfc92
ppc64le postgresql-private-devel-13.23-3.el9_8.ppc64le.rpm 7576d91819fade9c1353c31b2f9fe22de3d292bc41bb771338c00c9bb4fb7652
ppc64le postgresql-server-13.23-3.el9_8.ppc64le.rpm 912bc4841ac7d9da803b769c6350bfa749f32427bd901a0aa3833c9ce771e625
ppc64le postgresql-private-libs-13.23-3.el9_8.ppc64le.rpm a40f812773ea35a22c362c367199f809a7a621f01f28c94b403ce01231621300
ppc64le postgresql-upgrade-13.23-3.el9_8.ppc64le.rpm a6ad90c82a4f6fdd3facf31516da49f6cc076acf2ca9bfd910366ae462a76f24
ppc64le postgresql-plperl-13.23-3.el9_8.ppc64le.rpm b6b7764ea4583a03f8f2977431645a3ebb5aa9ed8a4d9460f72d7ed0c8b6030b
ppc64le postgresql-upgrade-devel-13.23-3.el9_8.ppc64le.rpm de931691eaae3f5a18c9d5d638dc42a1351a6e74277aa645e94f7d5474a26695
ppc64le postgresql-contrib-13.23-3.el9_8.ppc64le.rpm e0fe13faf8b25bef4c0e89b3f06703e97cb56fa580c7cf20b5aecfa2ffd19da9
ppc64le postgresql-server-devel-13.23-3.el9_8.ppc64le.rpm ef621feea6b1f6b2bbd83231d9a1af92e3b23aa75f30ffeaa8194118aec717de
ppc64le postgresql-test-13.23-3.el9_8.ppc64le.rpm f09e2aa11d1c55d5b58541d420e01ce3daa8b0f274334ad61f264d8a5ee2b726
ppc64le postgresql-13.23-3.el9_8.ppc64le.rpm faaba6d4785ab511286bb8eb6139cb46f042d2d00ee2a54f63876b5b3a3f0b9d
s390x postgresql-docs-13.23-3.el9_8.s390x.rpm 0d792829e22db403d7be92eebbf11aadf9dccc9db240f2338e056cee3ab9ebba
s390x postgresql-upgrade-devel-13.23-3.el9_8.s390x.rpm 117bed0f332054bc41f18cfdc4387f2b5a1ee1c968d6a28954f6b37a8832294f
s390x postgresql-static-13.23-3.el9_8.s390x.rpm 1ee3f0f1dd2cf41391de3dfd128f2006fe36e2e1c498ce81929597897c46d703
s390x postgresql-private-libs-13.23-3.el9_8.s390x.rpm 2c57f0b4878c745dd8ab1729e402d80c1a6d6817b967007906b7751b02dfb586
s390x postgresql-server-devel-13.23-3.el9_8.s390x.rpm 318e322fc4564c096e560957de128c299e4c39c4da433e6c94eaf4a18e815255
s390x postgresql-13.23-3.el9_8.s390x.rpm 4130748a122e1d6b5fdc541963f8b174e68fbcdd2204a691908f18c64da55b52
s390x postgresql-pltcl-13.23-3.el9_8.s390x.rpm 6a696f8f79692b9b11c396b70507c1b956d6671e4f5f5801835d976bddfd501c
s390x postgresql-contrib-13.23-3.el9_8.s390x.rpm a5e07f386619e8e1ac101f0f242bb7468f03f21bf572423cb7bd706a8903ceb6
s390x postgresql-plpython3-13.23-3.el9_8.s390x.rpm ad3b890abdd9f89c4030d807ff53e9f67d3ea92dc5c738d390d11680fca2ce36
s390x postgresql-plperl-13.23-3.el9_8.s390x.rpm b1be29d3bbb6c55d9cf6ecc17d544cf0053f23f575c1099b91bb3f2a7172fef1
s390x postgresql-test-13.23-3.el9_8.s390x.rpm bba99519b56a7f496adbe179e40f8f3eb7fabbb54413ee4b011ca3709248239e
s390x postgresql-upgrade-13.23-3.el9_8.s390x.rpm bcc2c9345e0244d7dfed1861de16646c4402e3f7d85badce7b7232e9eb23d600
s390x postgresql-private-devel-13.23-3.el9_8.s390x.rpm bf70c4551eb311ea58b595ce1c1d9db6016a0f991a3b29fa773b7dd366733313
s390x postgresql-server-13.23-3.el9_8.s390x.rpm c5b308058b2960313793d0405e37c64cf02e4b5cd275a3e537876bf08d33de95
x86_64 postgresql-private-devel-13.23-3.el9_8.x86_64.rpm 0ed443f99baa1cb50e17940c27b357c827a3b29e5a9f7da8dee4b84cc28eb76e
x86_64 postgresql-docs-13.23-3.el9_8.x86_64.rpm 11b618212f8c3675d292db45e7150b46ca0634dcb169e351ace4fff0244a2817
x86_64 postgresql-13.23-3.el9_8.x86_64.rpm 1cd5714d0e3edcddfba4a80d50b4faa3acb65b0100b687110bbe9dd2c79c6462
x86_64 postgresql-pltcl-13.23-3.el9_8.x86_64.rpm 213d47a163a98cbff4764e9ca75e8b0f3eb570fb7585f85f40e041eb1b7cf5dc
x86_64 postgresql-private-libs-13.23-3.el9_8.x86_64.rpm 2f20757fd931af90a3e6688154c13901e14477c535310e78c0c2b514520ce84d
x86_64 postgresql-server-13.23-3.el9_8.x86_64.rpm 585b92f4e95e2a4beaf401b8b8c813e7efbaec43763207585333d442c67fb59b
x86_64 postgresql-server-devel-13.23-3.el9_8.x86_64.rpm 5abe279690f32c55594872215b66db7a992e60097fc867b5c436e776a66fab3b
x86_64 postgresql-upgrade-13.23-3.el9_8.x86_64.rpm 5f94bb2fb2872908f2c1319ed7f3af5a641388cf584d5373d40ed86560b8a5aa
x86_64 postgresql-test-13.23-3.el9_8.x86_64.rpm 772e5754a45c94f36f5523a0e58ce6ef9da76eb616cbfd4c4a05057d9bab1dfb
x86_64 postgresql-contrib-13.23-3.el9_8.x86_64.rpm 894f21c85d35c22bf41da2c48361155b081602fa4635b00184b69e07c904eafa
x86_64 postgresql-upgrade-devel-13.23-3.el9_8.x86_64.rpm 9e09f8d1a3dbd15f6e9007e9fe40bcf37c90945cb74bd9e3604ee015f09d4f9e
x86_64 postgresql-plpython3-13.23-3.el9_8.x86_64.rpm a44c7212c696f49b64523a9eb2717a88365badff154f8dcc4852af9ae385844a
x86_64 postgresql-static-13.23-3.el9_8.x86_64.rpm c895759ffb222991bfa266efd092a9a1d5fba99969ce8cfdbcb75e8f68c30844
x86_64 postgresql-plperl-13.23-3.el9_8.x86_64.rpm dc2fa1c4a51a31b07155e40bcd226d5e48457998f5433f8bb1749f35e60b1bfd
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.