Customer Notice – Spirion Agent Update & Security Assessment for PostgreSQL

We have begun an incremental release of the Spirion Agent which includes an upgrade of PostgreSQL to version 16.12.

This update resolves the known issues referenced in your inquiry.

While this update is being rolled out, we’ve reviewed the current open CVEs and assessed their relevance to our implementation:

Security Assessment:

  • CVE-2024-10979: Not applicable — this issue relates to Perl, which is not enabled in our implementation.
  • CVE-2024-7348: Not a concern — the only database access is by the Spirion Agent itself using an encrypted admin credential, and there are no other user connections.

The following CVEs do not apply to our environment because our implementation only permits access by the agent code:

  • CVE-2025-1094
  • CVE-2024-4317
  • CVE-2024-10978
  • CVE-2024-10976
  • CVE-2025-4207
  • CVE-2024-10977

If you have further questions or need additional details, please don’t hesitate to reach out.

Was this article helpful?