Oracle Linux has rolled out important security updates for PostgreSQL and Python packages. For Oracle Linux 9, the PostgreSQL package has been updated to versions 13.22 and 13.18, addressing critical vulnerabilities identified as CVE-2025-8714 and CVE-2025-8715. These updates are classified as "Important" due to their severity.
In addition, Oracle Linux 8 has received a security update for Python 3.9, which includes a fix for CVE-2025-8194, categorized as moderate in severity.
Key Updates:
- PostgreSQL Security Update (ELSA-2025-14878)- Available for Oracle Linux 9.
- Updated RPMs include a range of PostgreSQL components such as contrib, docs, server, and various development packages for both x86_64 and aarch64 architectures.
- [View details](http://linux.oracle.com/errata/ELSA-2025-14878.html).
- Python Security Update (ELSA-2025-14900)
- Updated packages for Oracle Linux 8 include Python 3.9 and several related modules, addressing vulnerabilities and enhancing security.
- Available for both x86_64 and aarch64 architectures.
- [View details](http://linux.oracle.com/errata/ELSA-2025-14900.html).
Detailed Package Updates:
PostgreSQL 13.22 and 13.18 (Oracle Linux 9)
- RPMs include:- `postgresql-server`, `postgresql-docs`, `postgresql-contrib`, and additional components tailored for development and testing.
Python 3.9 (Oracle Linux 8)
- Updated packages include:- `python39`, `python39-devel`, `python39-psycopg2`, and numerous libraries like `numpy`, `scipy`, and `requests`.
Related Vulnerabilities:
- PostgreSQL: CVE-2025-8714, CVE-2025-8715- Python: CVE-2025-8194, CVE-2025-47273
Conclusion:
Regular updates to packages not only fix existing vulnerabilities but also enhance the overall security and functionality of the software. Users of Oracle Linux are strongly encouraged to apply these updates promptly to mitigate potential risks. For further details on the specific updates and vulnerabilities, users can refer to the provided advisory links.In the evolving landscape of cybersecurity, keeping software up to date is crucial for safeguarding sensitive data and maintaining system integrity. As threats become more sophisticated, the importance of vigilance and proactive measures cannot be overstated
PostgreSQL and Python updates for Oracle Linux
For Oracle Linux 9, the PostgreSQL package has been updated to versions 13.22 and 13.18, addressing two vulnerabilities (CVE-2025-8714 and CVE-2025-8715). The update is classified as "Important" due to its severity. Additionally, an update for Oracle Linux 8 includes several packages, including Python 3.9 with a security fix for CVE-2025-8194, which is considered moderate in severity.
ELSA-2025-14878 Important: Oracle Linux 9 postgresql security update
ELSA-2025-14900 Moderate: Oracle Linux 8 python39:3.9 security updatePostgreSQL and Python updates for Oracle Linux @ Linux Compatible