SUSE 5500 Published by

Three security updates are available for openSUSE Tumbleweed: one for postgresql17, one for postgresql15, and one for libcoap-devel. The updates address multiple vulnerabilities, specifically CVE-2025-12817 and CVE-2025-12818 for PostgreSQL, as well as CVE-2025-65493 through CVE-2025-65501 for libcoap-devel. Each update includes a package list of affected packages that can be installed to fix the security issues.

openSUSE-SU-2025:15786-1: moderate: postgresql17-17.7-1.1 on GA media
openSUSE-SU-2025:15784-1: moderate: postgresql15-15.15-1.1 on GA media
openSUSE-SU-2025:15780-1: moderate: libcoap-devel-4.3.5a-1.1 on GA media




openSUSE-SU-2025:15786-1: moderate: postgresql17-17.7-1.1 on GA media


# postgresql17-17.7-1.1 on GA media

Announcement ID: openSUSE-SU-2025:15786-1
Rating: moderate

Cross-References:

* CVE-2025-12817
* CVE-2025-12818

CVSS scores:

* CVE-2025-12817 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
* CVE-2025-12817 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
* CVE-2025-12818 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
* CVE-2025-12818 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the postgresql17-17.7-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* postgresql17 17.7-1.1
* postgresql17-contrib 17.7-1.1
* postgresql17-devel 17.7-1.1
* postgresql17-docs 17.7-1.1
* postgresql17-llvmjit 17.7-1.1
* postgresql17-llvmjit-devel 17.7-1.1
* postgresql17-plperl 17.7-1.1
* postgresql17-plpython 17.7-1.1
* postgresql17-pltcl 17.7-1.1
* postgresql17-server 17.7-1.1
* postgresql17-server-devel 17.7-1.1
* postgresql17-test 17.7-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-12817.html
* https://www.suse.com/security/cve/CVE-2025-12818.html



openSUSE-SU-2025:15784-1: moderate: postgresql15-15.15-1.1 on GA media


# postgresql15-15.15-1.1 on GA media

Announcement ID: openSUSE-SU-2025:15784-1
Rating: moderate

Cross-References:

* CVE-2025-12817
* CVE-2025-12818

CVSS scores:

* CVE-2025-12817 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
* CVE-2025-12817 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
* CVE-2025-12818 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
* CVE-2025-12818 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the postgresql15-15.15-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* postgresql15 15.15-1.1
* postgresql15-contrib 15.15-1.1
* postgresql15-devel 15.15-1.1
* postgresql15-docs 15.15-1.1
* postgresql15-llvmjit 15.15-1.1
* postgresql15-llvmjit-devel 15.15-1.1
* postgresql15-plperl 15.15-1.1
* postgresql15-plpython 15.15-1.1
* postgresql15-pltcl 15.15-1.1
* postgresql15-server 15.15-1.1
* postgresql15-server-devel 15.15-1.1
* postgresql15-test 15.15-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-12817.html
* https://www.suse.com/security/cve/CVE-2025-12818.html



openSUSE-SU-2025:15780-1: moderate: libcoap-devel-4.3.5a-1.1 on GA media


# libcoap-devel-4.3.5a-1.1 on GA media

Announcement ID: openSUSE-SU-2025:15780-1
Rating: moderate

Cross-References:

* CVE-2025-65493
* CVE-2025-65494
* CVE-2025-65495
* CVE-2025-65496
* CVE-2025-65497
* CVE-2025-65498
* CVE-2025-65499
* CVE-2025-65500
* CVE-2025-65501

Affected Products:

* openSUSE Tumbleweed

An update that solves 9 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the libcoap-devel-4.3.5a-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* libcoap-devel 4.3.5a-1.1
* libcoap-utils 4.3.5a-1.1
* libcoap3-3 4.3.5a-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-65493.html
* https://www.suse.com/security/cve/CVE-2025-65494.html
* https://www.suse.com/security/cve/CVE-2025-65495.html
* https://www.suse.com/security/cve/CVE-2025-65496.html
* https://www.suse.com/security/cve/CVE-2025-65497.html
* https://www.suse.com/security/cve/CVE-2025-65498.html
* https://www.suse.com/security/cve/CVE-2025-65499.html
* https://www.suse.com/security/cve/CVE-2025-65500.html
* https://www.suse.com/security/cve/CVE-2025-65501.html