{"id":"ALSA-2025:14826","summary":"Important: postgresql16 security update","details":"PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package.  \n\nSecurity Fix(es):  \n\n  * postgresql: PostgreSQL executes arbitrary code in restore operation (CVE-2025-8715)\n  * postgresql: PostgreSQL code execution in restore operation (CVE-2025-8714)\n\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n","modified":"2026-01-30T01:23:36.325498Z","published":"2025-08-28T00:00:00Z","related":["CVE-2025-8714","CVE-2025-8715"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2025:14826"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2025-8714"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2025-8715"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2388551"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2388553"},{"type":"ADVISORY","url":"https://errata.almalinux.org/10/ALSA-2025-14826.html"}],"affected":[{"package":{"name":"postgresql-test-rpm-macros","ecosystem":"AlmaLinux:10","purl":"pkg:rpm/almalinux/postgresql-test-rpm-macros"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"16.10-1.el10_0"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux10/ALSA-2025:14826.json"}}],"schema_version":"1.7.3"}