RHSA-2024:0990: Important: rh-postgresql12-postgresql security update
Important: rh-postgresql12-postgresql security update
Other sources
PostgreSQL is an advanced object-relational database management system (DBMS). Security Fix(es): postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL (CVE-2024-0985) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0990?
The severity of RHSA-2024:0990 is classified as important.
How do I fix RHSA-2024:0990?
To fix RHSA-2024:0990, update to version 12.18-1.el7 for rh-postgresql12-postgresql and related packages.
What vulnerabilities are addressed in RHSA-2024:0990?
RHSA-2024:0990 addresses a vulnerability where a non-owner can execute arbitrary SQL using 'REFRESH MATERIALIZED VIEW CONCURRENTLY' (CVE-2024-0985).
Which software is affected by RHSA-2024:0990?
RHSA-2024:0990 affects various Red Hat Software Collections packages for PostgreSQL 12.
Is there a reference for more information on RHSA-2024:0990?
Yes, for more detailed information, refer to the advisory associated with RHSA-2024:0990.