-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Dec 2025 19:03:31 +0100 Source: postgresql-17 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-17 postgresql-17-dbgsym postgresql-client-17 postgresql-client-17-dbgsym postgresql-plperl-17 postgresql-plperl-17-dbgsym postgresql-plpython3-17 postgresql-plpython3-17-dbgsym postgresql-pltcl-17 postgresql-pltcl-17-dbgsym postgresql-server-dev-17 postgresql-server-dev-17-dbgsym Architecture: armel Version: 17.7-0+deb13u1 Distribution: trixie Urgency: medium Maintainer: arm Build Daemon (arm-ubc-03) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 17 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-17 - The World's Most Advanced Open Source Relational Database postgresql-client-17 - front-end programs for PostgreSQL 17 postgresql-plperl-17 - PL/Perl procedural language for PostgreSQL 17 postgresql-plpython3-17 - PL/Python 3 procedural language for PostgreSQL 17 postgresql-pltcl-17 - PL/Tcl procedural language for PostgreSQL 17 postgresql-server-dev-17 - development files for PostgreSQL 17 server-side programming Changes: postgresql-17 (17.7-0+deb13u1) trixie; urgency=medium . * New upstream version 17.7. . + Check for CREATE privileges on the schema in CREATE STATISTICS (Jelte Fennema-Nio) . This omission allowed table owners to create statistics in any schema, potentially leading to unexpected naming conflicts. . The PostgreSQL Project thanks Jelte Fennema-Nio for reporting this problem. (CVE-2025-12817) . + Avoid integer overflow in allocation-size calculations within libpq (Jacob Champion) . Several places in libpq were not sufficiently careful about computing the required size of a memory allocation. Sufficiently large inputs could cause integer overflow, resulting in an undersized buffer, which would then lead to writing past the end of the buffer. . The PostgreSQL Project thanks Aleksey Solovev of Positive Technologies for reporting this problem. (CVE-2025-12818) Checksums-Sha1: 3fb623a37ae11b9a1c9daffb79be93aa0ad85bde 16660 libecpg-compat3-dbgsym_17.7-0+deb13u1_armel.deb b7f0b711ce794f272666bcfa5497350d61ca4c6a 15740 libecpg-compat3_17.7-0+deb13u1_armel.deb 26de494f0c8f2e715a0ebbfef6b5eae801e1395c 247832 libecpg-dev-dbgsym_17.7-0+deb13u1_armel.deb 8af90c73e3b89e5ab3f37a8d3bd227130295d6db 281832 libecpg-dev_17.7-0+deb13u1_armel.deb 206b4a65196b909fed83b5607e4a844407345b44 112740 libecpg6-dbgsym_17.7-0+deb13u1_armel.deb 04c243ca6d0c22e461fae31d5a8ae12ae018c772 55652 libecpg6_17.7-0+deb13u1_armel.deb 28479053c3a3983a69b880e53fd8f5f29583189b 90744 libpgtypes3-dbgsym_17.7-0+deb13u1_armel.deb 6a601f6ffa7c9bfa956a62b730e8851f86f3c0c5 41932 libpgtypes3_17.7-0+deb13u1_armel.deb 0e0ed2aa1bb84e3f67977d83710ebdab2c05eb70 138984 libpq-dev_17.7-0+deb13u1_armel.deb cbbcddba7aadb9d0e81c894e161394cc299c0328 291896 libpq5-dbgsym_17.7-0+deb13u1_armel.deb 7c5dc66cd81d8d7d8632468ba9a402282f0ab008 210020 libpq5_17.7-0+deb13u1_armel.deb 9f9b6fa45430e55289446da2f073ac07b3335ed3 18753804 postgresql-17-dbgsym_17.7-0+deb13u1_armel.deb 3cd3ba0accbceb3cdd027f3ca3f97a48729df745 16995 postgresql-17_17.7-0+deb13u1_armel-buildd.buildinfo 481ab91f14cf375740db756ae99e0e1f3db900c2 15868736 postgresql-17_17.7-0+deb13u1_armel.deb 1f0f11bfec447f7c3bca943007601ecf48a9cf8c 2752624 postgresql-client-17-dbgsym_17.7-0+deb13u1_armel.deb 9bb419c3b364ce3ffdfc1ea36fae842024801fb9 1923920 postgresql-client-17_17.7-0+deb13u1_armel.deb d9d07f7db6d4f192b69a5cb21ea47bae59218663 197012 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armel.deb 68893e52a5157b1d18f824a36900c3e39eb215a4 81440 postgresql-plperl-17_17.7-0+deb13u1_armel.deb 678841c9faef4f0f9eff70289e406a8f5c0af06a 197332 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armel.deb e4feda839ad96eceb9cf25deb02786028bbe2722 104480 postgresql-plpython3-17_17.7-0+deb13u1_armel.deb d4e05d3b457393bdde26a55c109d250777720ffc 82708 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armel.deb 5a3d1b06d04ebd9dfa4668b1a7ce1b26ba02e36b 40184 postgresql-pltcl-17_17.7-0+deb13u1_armel.deb 635f9a9d6d02a3a74c9cc02b2703f763df7b8434 56392 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armel.deb 31d7e236f527b3920072312defede70fd33c7c18 1300704 postgresql-server-dev-17_17.7-0+deb13u1_armel.deb Checksums-Sha256: 0ec1ed7750c7ff19f5da7c5e498f4daa5bef2d3748e347f7619a697bfb5ab99b 16660 libecpg-compat3-dbgsym_17.7-0+deb13u1_armel.deb fa535ea067be07954eca3c163b955035472306a3bb7374a2f6112bff56b9eec0 15740 libecpg-compat3_17.7-0+deb13u1_armel.deb 7d9c72832bacdce604388d114565e4e6bb012f1391719be9feaafdefa8e70e40 247832 libecpg-dev-dbgsym_17.7-0+deb13u1_armel.deb e1b89cfeaa13f5157f0fc3f001f53cf0c749e9c56006af5241dc6aef1ac8baa7 281832 libecpg-dev_17.7-0+deb13u1_armel.deb 1eeb0c433dd3980ad870a9d3284ad53f33e54e1aa05c692fb0d23b19dfd4606a 112740 libecpg6-dbgsym_17.7-0+deb13u1_armel.deb d2ae659f14460588adc17057ed692d8b6884bb940ae5651ee210fccc71ea221d 55652 libecpg6_17.7-0+deb13u1_armel.deb 948b76404886984fa96c36a0ae9964ec2c442f7cec2ad4d89a73526bfacb9093 90744 libpgtypes3-dbgsym_17.7-0+deb13u1_armel.deb d4b75afc59e93ce61ef5ee2c925c67d3fd6c84cfc1b5580700fa07c7bd41080f 41932 libpgtypes3_17.7-0+deb13u1_armel.deb cedfa7324e61f6c50dbe1058de86410f0b3abf16e89cc974fb286a88f90544e5 138984 libpq-dev_17.7-0+deb13u1_armel.deb 15c70bfe3d123ef22ade85495c2ee455dc1a9252aff713e9ea98d3dc47782f41 291896 libpq5-dbgsym_17.7-0+deb13u1_armel.deb 99692ba31e91580b4dae9bb1fda9bb272a0207d77bcb1f1be2a89f6002b04c40 210020 libpq5_17.7-0+deb13u1_armel.deb 3c31241496d6d749ff970b32eb67a6ad216ebe387735eaa4a0065ae324b53560 18753804 postgresql-17-dbgsym_17.7-0+deb13u1_armel.deb 8610e8dc6c94e0f35b1dab78af76a9cf7c023ac6471a72f73f9ca215cf7daec6 16995 postgresql-17_17.7-0+deb13u1_armel-buildd.buildinfo fdfe618e021ba2cd720500d236be7240d00f973af3a95604b5704730ab1129a1 15868736 postgresql-17_17.7-0+deb13u1_armel.deb 21bd11cdcf7acf58197a4daf9a365aca6495f978a4076a015ea86f798ba9080c 2752624 postgresql-client-17-dbgsym_17.7-0+deb13u1_armel.deb 442e091aeb8c426110f7df5376b8f6d0375291c0e7c36b957df0b8d837a62e47 1923920 postgresql-client-17_17.7-0+deb13u1_armel.deb 1836f846accdf055328dd5a39f4ba168096988b700e702e150c4a963c62d25ae 197012 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armel.deb e296a69f7ece423adaf288478bbe0dd9e7b1526e6be87d82db2b48370bc7de3d 81440 postgresql-plperl-17_17.7-0+deb13u1_armel.deb 83d1588bcc0a3b4f6195b1f8b80ed78274e287d452697626e48f5c6d7cbb8e00 197332 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armel.deb b68533b20ba80178940406be145d696c816e691e9c6fbed4aac2be40c56359be 104480 postgresql-plpython3-17_17.7-0+deb13u1_armel.deb 3af584609171b6b59588887c284e9656fbebe3e0d4fc9124308d74f158a5858c 82708 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armel.deb 06026cc656fc6007bc7f938988d512bbd6dd3d80176f5f754f1f575ac9ad2111 40184 postgresql-pltcl-17_17.7-0+deb13u1_armel.deb a8eb68a55258a9f51ae5b68287abc1a48f6194d9f74e4b37835b9d4e6d6d8ead 56392 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armel.deb df40b7f2ac7a29d6e04d5be5feedbbf1ab68691c7eca0ff08b025d17df333c19 1300704 postgresql-server-dev-17_17.7-0+deb13u1_armel.deb Files: fdceed08902b1d4602a9397aaf3cd8d0 16660 debug optional libecpg-compat3-dbgsym_17.7-0+deb13u1_armel.deb 30e179fd7369bc884ea6e428d62a59f8 15740 libs optional libecpg-compat3_17.7-0+deb13u1_armel.deb 73316d2e6d4544d1e4c144bbd787aad0 247832 debug optional libecpg-dev-dbgsym_17.7-0+deb13u1_armel.deb 53701309fcc1071ca2328bb566373995 281832 libdevel optional libecpg-dev_17.7-0+deb13u1_armel.deb 27c644e6582fc01bbc2add13993a58e0 112740 debug optional libecpg6-dbgsym_17.7-0+deb13u1_armel.deb 1f58bfb2efce1f4a14b20bd2b9c1eb29 55652 libs optional libecpg6_17.7-0+deb13u1_armel.deb 67c4fb86caf27671def7c57decfb6472 90744 debug optional libpgtypes3-dbgsym_17.7-0+deb13u1_armel.deb e0f08308f1de43bf3827b9b2dbd0c38d 41932 libs optional libpgtypes3_17.7-0+deb13u1_armel.deb 9d0ef3da8f3b47ae457b7cbee2f99b37 138984 libdevel optional libpq-dev_17.7-0+deb13u1_armel.deb f8126a1a044cb7b62578cf1fc0f2505b 291896 debug optional libpq5-dbgsym_17.7-0+deb13u1_armel.deb f38b2961e029a5fd9b05437dd024c934 210020 libs optional libpq5_17.7-0+deb13u1_armel.deb cbb98b62550d5b3f6015fe7447a1f6a4 18753804 debug optional postgresql-17-dbgsym_17.7-0+deb13u1_armel.deb 8588d5942d3268d8a54490db48b74660 16995 database optional postgresql-17_17.7-0+deb13u1_armel-buildd.buildinfo 7ca8b9facc14ceaa89b08771cda78ba0 15868736 database optional postgresql-17_17.7-0+deb13u1_armel.deb 30c5d40b2b8c4877fcf73f8b1c9ff61c 2752624 debug optional postgresql-client-17-dbgsym_17.7-0+deb13u1_armel.deb 2a1f241bb97b842a90e07d5b218574ed 1923920 database optional postgresql-client-17_17.7-0+deb13u1_armel.deb f1fad5d72d0df2537d9e45cd36983797 197012 debug optional postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armel.deb 0a97184a587954350f2bc02b7c68d0d5 81440 database optional postgresql-plperl-17_17.7-0+deb13u1_armel.deb 547412793a7bddfe703a430f1a2f4b43 197332 debug optional postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armel.deb cd9d047a2c960271aebbd619e7df50c2 104480 database optional postgresql-plpython3-17_17.7-0+deb13u1_armel.deb 40c1195447a89cc4434cbaae47e48d03 82708 debug optional postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armel.deb a907f1b185a2f54cc7116c3dc8824722 40184 database optional postgresql-pltcl-17_17.7-0+deb13u1_armel.deb f8fc1e0d1c33411ab3d73cb33882442f 56392 debug optional postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armel.deb 3122df545337f66bd2b9a93415c6044e 1300704 libdevel optional postgresql-server-dev-17_17.7-0+deb13u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEENsdrABvTD8MQ0UffVza3l394K2AFAmlUVPkACgkQVza3l394 K2D98xAAzaBweL/GlD9z8JruAHhChboMzuKhYjzGBVhvTmYpuCE5svV1igCvlju2 oY1NbZBifi8ldnM4bPAIDp2PaZknMu2/Kh3/zTxXZ0qHIs73qEn9pS8HpwsJ3Y4Z zi2wcJvxFNfZifhhQ1DND6WOi31Pd+ex4C0DoJnmybb7XB7lLCXCvg4ygNlsxWff umPlbO6vsqSIXKbMuGeKA/nwA2NA6ZpvqzOujQvkpPi07+aPPD9JfLknVSOCfyoI a0NOeennsiJ+ziDdjoXXrM3w1ZoXpZuzAsTlpZ92Q9TcoUJSri+2kx7ToqklgeH2 1W39nMz6qB6cH+KmJnn6MF3+MX1RxUOJ197evt9vAzRpYx8SCBEo3+MXyITUEPiZ /AhayMyuT4ICxUx8n69vBcahXZ/W+cHRcERdGwrcknCYrMuW5tfrMdoLnJWffsR0 hyD8gKj/LtDsynspZ4jN7ZSgB5R7rDQ9jaBfZXARyQkB+d1Gc8uuwXq3SzEEEOIo 1MmUWnn5BFIkPlCHyytQuuwX1wyx8SqiXXSqNKMpqDdiNpKJLrGK2LlMBAquOwcM wa/5AgXyg0/Gr3jK22yXRvDz0ClB5FJCEMQwaBdezYonUCvCnzoFMekNdJIPcaJB 1OqlV6W53xkO89t4i2rejHF1t9vX/YkxRQrE7yyGOLb/WZMAeMs= =HpDi -----END PGP SIGNATURE-----