[CLSA-2025:1764868292] Fix CVE(s): CVE-2025-1094
Type:
security
Severity:
Important
Release date:
2025-12-04 17:11:36 UTC
Description:
* SECURITY UPDATE: improper neutralization of quoting syntax in libpq functions allows SQL injection via psql in certain usage patterns - debian/patches/CVE-2025-1094.patch: Fix handling of invalidly encoded data in escaping functions - CVE-2025-1094
Updated packages:
  • libecpg-compat3_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:12f696279570e0794de2b492cac4baea2e29fe55
  • libecpg-dev_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:c513ea3b3414d60d0d1e3b19e80bf7966d76eefd
  • libecpg6_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:dd4b15c2b23f243cc7e1d993eec302698340fb93
  • libpgtypes3_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:0c3b45a90d1c3e53a926a799eb27bdc641b29257
  • libpq-dev_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:e563f53ec36e77a1b18a3bc4ab34e0a349a8dd54
  • libpq5_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:493117f8077758b9f61a5a9dea31090b1aea872f
  • postgresql-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:7326a97ce2ac68e523362e1b4922af5ea058a607
  • postgresql-client-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:ca882b7d88e1cb1fa2c41743b35bfea771be90a3
  • postgresql-doc-11_11.22-0+deb10u2+tuxcare.els1_all.deb
    sha:7627151dc79d11a681ba5faac3462eafe09c50a1
  • postgresql-plperl-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:cc7daa65cc1642d585f33268824a150a9eac63e3
  • postgresql-plpython-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:8d69debe71765082b9db7934714d3d6a185a135f
  • postgresql-plpython3-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:1c6b99ce33631b85fc6486c3779ec10b79d3fab9
  • postgresql-pltcl-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:5b7ed2fa1e729a2f55258a0ab4ea428f73518722
  • postgresql-server-dev-11_11.22-0+deb10u2+tuxcare.els1_amd64.deb
    sha:a4fa4b0606db2f6986e832c82cd3189bf9c706c7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.