-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Dec 2025 19:03:31 +0100 Source: postgresql-17 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-17 postgresql-17-dbgsym postgresql-client-17 postgresql-client-17-dbgsym postgresql-plperl-17 postgresql-plperl-17-dbgsym postgresql-plpython3-17 postgresql-plpython3-17-dbgsym postgresql-pltcl-17 postgresql-pltcl-17-dbgsym postgresql-server-dev-17 postgresql-server-dev-17-dbgsym Architecture: armhf Version: 17.7-0+deb13u1 Distribution: trixie Urgency: medium Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 17 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-17 - The World's Most Advanced Open Source Relational Database postgresql-client-17 - front-end programs for PostgreSQL 17 postgresql-plperl-17 - PL/Perl procedural language for PostgreSQL 17 postgresql-plpython3-17 - PL/Python 3 procedural language for PostgreSQL 17 postgresql-pltcl-17 - PL/Tcl procedural language for PostgreSQL 17 postgresql-server-dev-17 - development files for PostgreSQL 17 server-side programming Changes: postgresql-17 (17.7-0+deb13u1) trixie; urgency=medium . * New upstream version 17.7. . + Check for CREATE privileges on the schema in CREATE STATISTICS (Jelte Fennema-Nio) . This omission allowed table owners to create statistics in any schema, potentially leading to unexpected naming conflicts. . The PostgreSQL Project thanks Jelte Fennema-Nio for reporting this problem. (CVE-2025-12817) . + Avoid integer overflow in allocation-size calculations within libpq (Jacob Champion) . Several places in libpq were not sufficiently careful about computing the required size of a memory allocation. Sufficiently large inputs could cause integer overflow, resulting in an undersized buffer, which would then lead to writing past the end of the buffer. . The PostgreSQL Project thanks Aleksey Solovev of Positive Technologies for reporting this problem. (CVE-2025-12818) Checksums-Sha1: 1423236a72f2c7bc463534e0caedf1cb521ae243 16920 libecpg-compat3-dbgsym_17.7-0+deb13u1_armhf.deb ac57faa15d01f89cdb51b3330ed087a745307f32 15796 libecpg-compat3_17.7-0+deb13u1_armhf.deb 3573e0ea4b567ca79e8317a4ef8ac24266dab7a4 247892 libecpg-dev-dbgsym_17.7-0+deb13u1_armhf.deb c0747517c53bcce18f486e83fb5728d63b7fa98c 281896 libecpg-dev_17.7-0+deb13u1_armhf.deb c8233cb88ab36756b6299cd50687cd96a2e1a3a4 113828 libecpg6-dbgsym_17.7-0+deb13u1_armhf.deb 813701cd7bffab26a9a523634cdb86d34b572c68 54372 libecpg6_17.7-0+deb13u1_armhf.deb 761f96df319feaeb0b115ba772dd9f7fd6a784f2 91368 libpgtypes3-dbgsym_17.7-0+deb13u1_armhf.deb 16eb6b1259558b47a744758df9f7d1051a64e4ef 40876 libpgtypes3_17.7-0+deb13u1_armhf.deb 290a3d9cc747c6cf7bedee7f1aa200410d8809db 138696 libpq-dev_17.7-0+deb13u1_armhf.deb 7c22096c9b96f4cd5f9f9767b09a18f53312265e 297084 libpq5-dbgsym_17.7-0+deb13u1_armhf.deb 173b1bf2024ff9456769cebf45002e7fe5dbdb7c 211032 libpq5_17.7-0+deb13u1_armhf.deb b24c0fafcc19e5bf1088e18dcf7e48ce05dfe7ab 18845316 postgresql-17-dbgsym_17.7-0+deb13u1_armhf.deb 1f002770a5ca1a927394672d4d4d0b551e3bf127 17009 postgresql-17_17.7-0+deb13u1_armhf-buildd.buildinfo d91503219a1e73ce563f22d9a7fff8fbdef7e9bd 15886256 postgresql-17_17.7-0+deb13u1_armhf.deb 89b66a9aeb923d22aebc10ec4a931ea73e3c73ec 2787640 postgresql-client-17-dbgsym_17.7-0+deb13u1_armhf.deb 3367fff6051040cdc21f42a2d180bf3f95319395 1939980 postgresql-client-17_17.7-0+deb13u1_armhf.deb 74ba4611912589edad521efc31a72c2d8f19d38d 196832 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armhf.deb fb7dbbf1ac6ab41bf5b2ebf07ddaa5a50264fc04 81556 postgresql-plperl-17_17.7-0+deb13u1_armhf.deb f768e505cdaa12b358c691d449d9478b4a4e5841 198364 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armhf.deb 414389747254efeeabe808a95fe6731e5adc64c3 103728 postgresql-plpython3-17_17.7-0+deb13u1_armhf.deb 1f0365bc82d194335a4d8fab5f4a2b2b430b8d4b 82900 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armhf.deb 390b25a08c95e4cf0e90257b50c4c123bcf0f287 40180 postgresql-pltcl-17_17.7-0+deb13u1_armhf.deb 85f160168685611ea1895216fdbf6d8425c09225 56240 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armhf.deb 4eadf754c22b8729d64e6ef247db9c4b277c979f 1299148 postgresql-server-dev-17_17.7-0+deb13u1_armhf.deb Checksums-Sha256: 418e550dae480e8f575997d2b1e77e7d2d4f4e0b9a00a5c9a735784fc5114320 16920 libecpg-compat3-dbgsym_17.7-0+deb13u1_armhf.deb 1a53a90ca35322cd1819fccecbd812ffa6ab7ebc939742bad72cb477bd306c73 15796 libecpg-compat3_17.7-0+deb13u1_armhf.deb 0a8989058ce2e2d8e16255fae49b53181960fbae87703e13edb7455cb7208797 247892 libecpg-dev-dbgsym_17.7-0+deb13u1_armhf.deb 974867a12088b6fb4211bdb9cc91ec0d252144350b33a5dc55964741ea82354c 281896 libecpg-dev_17.7-0+deb13u1_armhf.deb 7f792fb13076bc257ad5fe6d44996933e5c39329d5126814c514a3fe198ad7af 113828 libecpg6-dbgsym_17.7-0+deb13u1_armhf.deb d8ef700c27e829a06a667db57cb7dd5bb9e0ceb46ac6e98588941ea1c8c3b8bb 54372 libecpg6_17.7-0+deb13u1_armhf.deb 7f219d4d9458e7358e47db286c62761830c0783b57560745a53c6525b1143db0 91368 libpgtypes3-dbgsym_17.7-0+deb13u1_armhf.deb 7786a3dd45b67a38e564a027cc8ebfa5f6d0c99232773a47aca95cad925bb81b 40876 libpgtypes3_17.7-0+deb13u1_armhf.deb 70d128924bd77db8ebf390b93735487549c3f3c180461330b52bcf95d96ea315 138696 libpq-dev_17.7-0+deb13u1_armhf.deb 864c617aee931f46d41b1226a3b7d31676b0197a6d31dda679e6fa07e84213ea 297084 libpq5-dbgsym_17.7-0+deb13u1_armhf.deb e85996484dd1d7d595ee58cca13d6080ec767b31b9dd539b402e6e72f9112f75 211032 libpq5_17.7-0+deb13u1_armhf.deb 0de54e655b596d5ec83476da8e3f217ff7e7c946dde4d0cba2071d54e0a598aa 18845316 postgresql-17-dbgsym_17.7-0+deb13u1_armhf.deb 0dbbfeeadd8905d3c0a6908528fb7efb72d3ac140fc3e703114c628aa5f4c78e 17009 postgresql-17_17.7-0+deb13u1_armhf-buildd.buildinfo 406480bf00687d6c77872ceb5879dc7a5d00678c882b7d0b465149b80a8d12ed 15886256 postgresql-17_17.7-0+deb13u1_armhf.deb 505012f59062078f01c3f44d93cbb6455d1b9aabb969106d97af73e41b1ae48c 2787640 postgresql-client-17-dbgsym_17.7-0+deb13u1_armhf.deb 327fc82abbb82a73cb4075064d279b172e42dd2a741602029d56531b59995e58 1939980 postgresql-client-17_17.7-0+deb13u1_armhf.deb 03d69f752dd09d15207aaee04f84e413355d26c24667f09df6a212bbf6516af5 196832 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armhf.deb cb7c5fe356e324055add2cbc31cabba38b3f9524d303b26a9256c9d26c700f94 81556 postgresql-plperl-17_17.7-0+deb13u1_armhf.deb 2176b5c85118ddabd54c02e1c98a5102b46b37940fd85afe8a1d4562b7616b29 198364 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armhf.deb ba24250fa86b90e0439b00ca8b0cf2583d1d663caaf53acc41397710588b8324 103728 postgresql-plpython3-17_17.7-0+deb13u1_armhf.deb 2b8967f4826f3f49121120aae188eee77f082adb79f09cb83cc49f4dad836f00 82900 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armhf.deb 7383effa61c61356e54fe7b3c89355d0f8416ba23596e4bd94c04583e5c96f0d 40180 postgresql-pltcl-17_17.7-0+deb13u1_armhf.deb 7ec8344fbe6653048c98cdb3f69a5b5e492ef3364fd04882ef58c274c0215b04 56240 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armhf.deb c2c43bf4bab6b6dc698ad5073ac78b79a1cae2530229ab6f417d67f84fef0de3 1299148 postgresql-server-dev-17_17.7-0+deb13u1_armhf.deb Files: 8c4962ebb7b808b99a184f2270210f00 16920 debug optional libecpg-compat3-dbgsym_17.7-0+deb13u1_armhf.deb 17a5a0989c0b0cbe4c32bc9ed4702d0e 15796 libs optional libecpg-compat3_17.7-0+deb13u1_armhf.deb 67b86c9c0a428d7a3a1f0d44ab4b6575 247892 debug optional libecpg-dev-dbgsym_17.7-0+deb13u1_armhf.deb 337d6f91c7ceae1535bb781d9e1d04fc 281896 libdevel optional libecpg-dev_17.7-0+deb13u1_armhf.deb e09623edba674d93d63d89bb3b65852b 113828 debug optional libecpg6-dbgsym_17.7-0+deb13u1_armhf.deb d3cf96e92386a55b2b49802a2de3b15e 54372 libs optional libecpg6_17.7-0+deb13u1_armhf.deb c8bab6657b3c6ddf197569feba7e9e62 91368 debug optional libpgtypes3-dbgsym_17.7-0+deb13u1_armhf.deb e9ea060d252a2da29a41c9b380ebb214 40876 libs optional libpgtypes3_17.7-0+deb13u1_armhf.deb 519dbd231e1560237852536a472d5bc7 138696 libdevel optional libpq-dev_17.7-0+deb13u1_armhf.deb 190f4c8b403c53648ed2c9624c07a65c 297084 debug optional libpq5-dbgsym_17.7-0+deb13u1_armhf.deb 1cd18c60d3b6823d9421b2277689997a 211032 libs optional libpq5_17.7-0+deb13u1_armhf.deb 670b0c6a51d6641053a94ed996027937 18845316 debug optional postgresql-17-dbgsym_17.7-0+deb13u1_armhf.deb f8bd6d6c96ee0c0d3d2b2539512d7cf3 17009 database optional postgresql-17_17.7-0+deb13u1_armhf-buildd.buildinfo 51f4cf086ef32ea96eae8a2cce1e4cb3 15886256 database optional postgresql-17_17.7-0+deb13u1_armhf.deb 60470f669d442de3fc75090bcb9d0263 2787640 debug optional postgresql-client-17-dbgsym_17.7-0+deb13u1_armhf.deb 1a1916c6802d9d2729f62fb6c19cd32e 1939980 database optional postgresql-client-17_17.7-0+deb13u1_armhf.deb 2794b550c0ce576161efce0a4ad8ba9b 196832 debug optional postgresql-plperl-17-dbgsym_17.7-0+deb13u1_armhf.deb f7b99749aa7557cc6faebfe75b668b7d 81556 database optional postgresql-plperl-17_17.7-0+deb13u1_armhf.deb 0984e5933d17eb7cef39adac19ff7568 198364 debug optional postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_armhf.deb 380ad0498cde268b2cc706fbb3a0b7cd 103728 database optional postgresql-plpython3-17_17.7-0+deb13u1_armhf.deb 5a6ad466479c7e695c5753b01a5e8737 82900 debug optional postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_armhf.deb 085514036fefc47fecdf393ece1bfc99 40180 database optional postgresql-pltcl-17_17.7-0+deb13u1_armhf.deb 50c6ef10bb294ade8a6a1ae46af33977 56240 debug optional postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_armhf.deb 82c5eefe7539cb319f00c6b619af8f5b 1299148 libdevel optional postgresql-server-dev-17_17.7-0+deb13u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpxWVfktWxVoKRwGgJ7tNDw2WyRsFAmlUVEIACgkQJ7tNDw2W yRvpgxAAz64v52WYs/OCj6toW/UzonOPlXoc5fpm5w/zJ1dzIq4rESa86LZDUvfJ 82EX8Dbl7CoyAUF/CS5FO52yHe3+lDCviI+puTDRuJonictYeaTp8n/LyZjJHuCX 96unedKykvyt6SvC50u/EkZ/2HxEm+7VKAccCQDU3xaxEQZBPL1ZDVfOnOZZwtbZ xhG92UsRzqTM2Po9otMZi7MwNn6AB4B5BFDkMydfBOAzjIOB8V5ytTQnkEat9RTk PJKhJxy07z4rP68bmBuIEJK9bAiEkssnDzNReVrHMkfmb+cmLoCtJfx6o36yFPv6 bBPdwrU3iONt4f0wp4xV+rMqptP2AIbuf3XhxxlAEhY3AJtYPFqtFHEcsmKMl/aD cCZjiB//YTLRyi1ZlhdFvAFtMgiZuBIDIqSBIKxtHPDRf4jvfgOEyTy0PuLU3qK+ 7IS1kFRGNwPKxUu76vVFDsP6UTDOIp4a3dP1Jh1KIikd5v7Reu5JT55siqBXVCpp 5Q14QTMm2ps+wFzubGK4VfBIXVfFeCsjFC7qt2RFO7s6PZWhah8SyXuzhAKuedBN sAROOQ1k28+lgTo4qO874Z/aqTF1ZInYYOrDg6FyyX1KbHL1uhPSWwXp/4W2tfsq F2TuTehmje1Wbi+xKOIxGRiaP57PhAe35kD7Mw9CNQQxfywnbKc= =WDYW -----END PGP SIGNATURE-----