-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Dec 2025 19:03:31 +0100 Source: postgresql-17 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-17 postgresql-17-dbgsym postgresql-client-17 postgresql-client-17-dbgsym postgresql-plperl-17 postgresql-plperl-17-dbgsym postgresql-plpython3-17 postgresql-plpython3-17-dbgsym postgresql-pltcl-17 postgresql-pltcl-17-dbgsym postgresql-server-dev-17 postgresql-server-dev-17-dbgsym Architecture: riscv64 Version: 17.7-0+deb13u1 Distribution: trixie Urgency: medium Maintainer: riscv64 Build Daemon (rv-manda-01) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 17 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-17 - The World's Most Advanced Open Source Relational Database postgresql-client-17 - front-end programs for PostgreSQL 17 postgresql-plperl-17 - PL/Perl procedural language for PostgreSQL 17 postgresql-plpython3-17 - PL/Python 3 procedural language for PostgreSQL 17 postgresql-pltcl-17 - PL/Tcl procedural language for PostgreSQL 17 postgresql-server-dev-17 - development files for PostgreSQL 17 server-side programming Changes: postgresql-17 (17.7-0+deb13u1) trixie; urgency=medium . * New upstream version 17.7. . + Check for CREATE privileges on the schema in CREATE STATISTICS (Jelte Fennema-Nio) . This omission allowed table owners to create statistics in any schema, potentially leading to unexpected naming conflicts. . The PostgreSQL Project thanks Jelte Fennema-Nio for reporting this problem. (CVE-2025-12817) . + Avoid integer overflow in allocation-size calculations within libpq (Jacob Champion) . Several places in libpq were not sufficiently careful about computing the required size of a memory allocation. Sufficiently large inputs could cause integer overflow, resulting in an undersized buffer, which would then lead to writing past the end of the buffer. . The PostgreSQL Project thanks Aleksey Solovev of Positive Technologies for reporting this problem. (CVE-2025-12818) Checksums-Sha1: 6302b901de9b24772d219ece6ac6871302dda63e 16728 libecpg-compat3-dbgsym_17.7-0+deb13u1_riscv64.deb 91688aba26a2cc35bca8985f6c39f984a5074441 17044 libecpg-compat3_17.7-0+deb13u1_riscv64.deb b76d8b60b4ba303b2276a9adc7a067b97d982db4 247576 libecpg-dev-dbgsym_17.7-0+deb13u1_riscv64.deb 066338a794baba5633ad17b2ff50949e994e8aeb 384344 libecpg-dev_17.7-0+deb13u1_riscv64.deb 221af123cd8d8e19ea21f504ec9c00a266bfa07d 106880 libecpg6-dbgsym_17.7-0+deb13u1_riscv64.deb d827e6e06e398038a2c9c6f70eb326147420a2c9 60592 libecpg6_17.7-0+deb13u1_riscv64.deb d6a76e380fc693e72cd299e5972dd95b9ed78d46 86140 libpgtypes3-dbgsym_17.7-0+deb13u1_riscv64.deb 099f95622f29b77e47843b0528b62dfae7edb847 46588 libpgtypes3_17.7-0+deb13u1_riscv64.deb a3294c2a3da286e861bc1e6cda883ab5b9b6a608 266356 libpq-dev_17.7-0+deb13u1_riscv64.deb 3b0a376bf1ca4f510efb66548528bc708010bbe3 285592 libpq5-dbgsym_17.7-0+deb13u1_riscv64.deb 7b807df6814fe6f65523d5121590dcf8b82c6bb8 228208 libpq5_17.7-0+deb13u1_riscv64.deb 7a934ec138e925f09ef0004cef83944f6020c039 17284508 postgresql-17-dbgsym_17.7-0+deb13u1_riscv64.deb 29edd547554cc0261ab293cfce374c901eb4bacf 16398 postgresql-17_17.7-0+deb13u1_riscv64-buildd.buildinfo 1bb52433137ffa28c6a45d9c4fd351c9531c7106 6906452 postgresql-17_17.7-0+deb13u1_riscv64.deb dac68ac5c82bcdea9d3a2f109cff0a22717d314c 2839260 postgresql-client-17-dbgsym_17.7-0+deb13u1_riscv64.deb 3b6acd75aac72a7514a7caa141fde29262250e38 2027928 postgresql-client-17_17.7-0+deb13u1_riscv64.deb 77f3da068d4c6abbda9b03bd869d994fef2cca3a 193356 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_riscv64.deb 69ce8eb34d5813c081cdf2c33c351738e224ea18 69376 postgresql-plperl-17_17.7-0+deb13u1_riscv64.deb 971388fd09d3d1ecb2a3d14aac49737e7999bfc6 196772 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_riscv64.deb e78fe00d9556d8ad1543937cac0a8347005dfac9 89808 postgresql-plpython3-17_17.7-0+deb13u1_riscv64.deb e177167f4d0576c06defcfc8e93729f5f87042ca 83448 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_riscv64.deb d4c33bbec6c62e9e1844f50eb0c9fb009cf17a92 41588 postgresql-pltcl-17_17.7-0+deb13u1_riscv64.deb a15cc0b6aa5b655bc74643b8f7cd992497e50674 54212 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_riscv64.deb ca0bfe782f33837ada81470c50fd50f8306f0d01 1527164 postgresql-server-dev-17_17.7-0+deb13u1_riscv64.deb Checksums-Sha256: d6063b5f83f451626690308b9bc4b4cfb016bc8ed026bbbb792514814b3e67e6 16728 libecpg-compat3-dbgsym_17.7-0+deb13u1_riscv64.deb 3af0bbb5e77ab4f584a92f94a8e88a0b3a90c54d02dcd701173164eac31e1421 17044 libecpg-compat3_17.7-0+deb13u1_riscv64.deb aa28e6645159d1498c77422dd3f217c5f67322cfce06a96e639d15e9c54afc57 247576 libecpg-dev-dbgsym_17.7-0+deb13u1_riscv64.deb 717300ab6037a206d404db82621648a66de7676a6eb47d60f3c7d854dc5dbb59 384344 libecpg-dev_17.7-0+deb13u1_riscv64.deb 325247dbdb1004d6383803a0d83a509cd003ac1c7fa454f1f00326bc95f4838c 106880 libecpg6-dbgsym_17.7-0+deb13u1_riscv64.deb 91ec286671b5ee9d95f1c9f9991220658e3b4130c4e73b2a92fe6bdba53b05fd 60592 libecpg6_17.7-0+deb13u1_riscv64.deb 50443b8f17c081d4436aad5233d335e9cfbfe07280104f8b99ee54f4bbcc7f2f 86140 libpgtypes3-dbgsym_17.7-0+deb13u1_riscv64.deb 7867f652e246dc63a599765def83d3b12181d4331e63438f9b0518d76971f94f 46588 libpgtypes3_17.7-0+deb13u1_riscv64.deb d3beccf725e2d960045af4c44164377dd0d02200f80a458bf336724f2093eba8 266356 libpq-dev_17.7-0+deb13u1_riscv64.deb 3135339ec5c2703a5704a8785ce1f1ad59e24e7b48d0e4f039d1b9bb31432c4c 285592 libpq5-dbgsym_17.7-0+deb13u1_riscv64.deb afcd5fc6b07c0a98b6aa869b2dd6b47623007b01e5f6bdd7951ca0c1af3d256f 228208 libpq5_17.7-0+deb13u1_riscv64.deb e83c3c3d1cd0b0245cda9b2632060eb4d62a772921e2e11f1028b73eb71c0553 17284508 postgresql-17-dbgsym_17.7-0+deb13u1_riscv64.deb 58310eda4d7915c91179ea40d988f84ac95e0111f332f4edb9d691897d66da5f 16398 postgresql-17_17.7-0+deb13u1_riscv64-buildd.buildinfo 17bb86a3984fcfd0f9c02587a1498e8341b704d40082b9ecc1006d5fcc1f56cc 6906452 postgresql-17_17.7-0+deb13u1_riscv64.deb 1b76e88be968ce97c2ebf453412934352bfa8e2ae8999b42ff78b72e662c4839 2839260 postgresql-client-17-dbgsym_17.7-0+deb13u1_riscv64.deb 0e2e54df61d32ee3d05fe38700c21db35e209f2d8e54920555644b7ef4da0d05 2027928 postgresql-client-17_17.7-0+deb13u1_riscv64.deb 5fb5cca4d4bbddd0abba9dc08cc6180f7db7dced9f961e5c3934a0e3af1256eb 193356 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_riscv64.deb e681b9d0a0ebe734400e16696e690804b7ee9401ce7a72c658c971a778c261af 69376 postgresql-plperl-17_17.7-0+deb13u1_riscv64.deb 83e3836da6ba25ff73b5061757a2f5a692b429f52f3d9701dcba9cf5d804d5b4 196772 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_riscv64.deb 11cb30bace23563f978f68f9633f2c0d2254ef3ebb02d022dfca19f3d7fe8526 89808 postgresql-plpython3-17_17.7-0+deb13u1_riscv64.deb a405c5c34fd26823e4ee6e9d216b1bd691d2a5ba898803db299345b816091b9c 83448 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_riscv64.deb d7d25875ee7ffbbe7aa225100499a4b107524ed080bb33572cd29d6925d79352 41588 postgresql-pltcl-17_17.7-0+deb13u1_riscv64.deb bb49fd10619a370ca716ec9bde5ac529d1e011e2f829690874be9536bc74bd77 54212 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_riscv64.deb 24a9202809c73c10113d75a0f931cf785915d3d919684df8002b1d05ab906e5f 1527164 postgresql-server-dev-17_17.7-0+deb13u1_riscv64.deb Files: 56fa2499d7df3de103ff359a0a165687 16728 debug optional libecpg-compat3-dbgsym_17.7-0+deb13u1_riscv64.deb 69e7209c3eda84f3f66bc0915afff2da 17044 libs optional libecpg-compat3_17.7-0+deb13u1_riscv64.deb 2c19d2ffff9753ab776a5ea94096d215 247576 debug optional libecpg-dev-dbgsym_17.7-0+deb13u1_riscv64.deb 5770dba7c1447e0d4986ab6ca4e63959 384344 libdevel optional libecpg-dev_17.7-0+deb13u1_riscv64.deb c88b25ef63a1d654486b6bf2ff6c949b 106880 debug optional libecpg6-dbgsym_17.7-0+deb13u1_riscv64.deb 1df8d67597c7d3aea43208b4c5e6e0f2 60592 libs optional libecpg6_17.7-0+deb13u1_riscv64.deb 9dce34c43ddde95e5d08c88b9e321f59 86140 debug optional libpgtypes3-dbgsym_17.7-0+deb13u1_riscv64.deb 45996eb74b6b19811681361e5ed2d4f4 46588 libs optional libpgtypes3_17.7-0+deb13u1_riscv64.deb 762b3cf5086cb21f3f2eddfbba9106f2 266356 libdevel optional libpq-dev_17.7-0+deb13u1_riscv64.deb a179ca73a7a606db2a34fe6ad802d7f0 285592 debug optional libpq5-dbgsym_17.7-0+deb13u1_riscv64.deb ed091553dab52e82b6eacf178e71d2af 228208 libs optional libpq5_17.7-0+deb13u1_riscv64.deb ab9925382a918418588b481286b094f1 17284508 debug optional postgresql-17-dbgsym_17.7-0+deb13u1_riscv64.deb 242392819cdf903d715ba3c39c087ce4 16398 database optional postgresql-17_17.7-0+deb13u1_riscv64-buildd.buildinfo 28a59e1593f69a3b3841e0cf46ce63b7 6906452 database optional postgresql-17_17.7-0+deb13u1_riscv64.deb eae2d4d69f41c1f6ed4ad6bd9da06f24 2839260 debug optional postgresql-client-17-dbgsym_17.7-0+deb13u1_riscv64.deb bb35ae034764feca9176743e67b3c0a6 2027928 database optional postgresql-client-17_17.7-0+deb13u1_riscv64.deb 0adf1f4a78cc559ab6bc1dacc5f7e65b 193356 debug optional postgresql-plperl-17-dbgsym_17.7-0+deb13u1_riscv64.deb 3fcf863efaffc7b3f01df711287981f5 69376 database optional postgresql-plperl-17_17.7-0+deb13u1_riscv64.deb de7ec40dcb36d3c4c74fecc74492f874 196772 debug optional postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_riscv64.deb f5f8c6accdbb644430cba24a54d238a3 89808 database optional postgresql-plpython3-17_17.7-0+deb13u1_riscv64.deb 8eb3cde1027243134b1f386b96c8e0c2 83448 debug optional postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_riscv64.deb 56452d03b1a3cbd4f5fcd2777b4361f1 41588 database optional postgresql-pltcl-17_17.7-0+deb13u1_riscv64.deb 85da82f748d8590d7d32a9a7553058bd 54212 debug optional postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_riscv64.deb 9b766078c5d56e47dced9468427bdc49 1527164 libdevel optional postgresql-server-dev-17_17.7-0+deb13u1_riscv64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEwN+C+Bc8deN4UliX50ghctvtZFQFAmlUePEACgkQ50ghctvt ZFSoBg//dm/B+botJdnEkvukgU8ukMlOcEyP6Yn9c4Mes6mzhuqtDpBgu0u+AI3+ B/tbztLanCMK5KF1uJg3cEqB+RfU734i4dgFezCuBAvL7yfa9vmF98oiCYoFLsSy BBJvDhTQA4q7IKaVTPm82GD74PqH2+WK2KVzbzK0+khGh+PPngY9JUCWQ6PI8QmW SamOzFYafCiMraWjLQOede5N7qTF9GQrT04oOzyli8LqkCANe2YcIugKM25g2vqj Uq2H1VKnHV/zA6NzqQqjqMMlsgLtXskJtAdwmVg6RJbJBVxAb7dJq6LlSdZv8z8k uFvh8gFs+0NFPuqrMbzN97kZUIobud5LFKuNYzRbC76YYymkwoLjBPUnXC3L4fr9 2ip2/G/pPVKA7Z/Ld+rTTk5eomYt5gqGIKFVL3N6IEkew4r0rVmG1A6Dsu8l5UBQ uCZaHNJC+PJRdoEDlePY7GJzBfZHDbnHElxR+RPDy+z+VtxCOiztk6krCs9fwN38 1jdxlArUpsQtPZKOwnj2cneyv1QPQJkDE8vjfgwQhO9W2+fV7f/15e8eMaOmGT+6 pSLidKAi2wnPJVF9K6JvdlS87lJIAmw1N/MozPoeHwNScBchL2fAT4SyxH8VrfRK mnJ9dMglIilgLuzqVgWhbcPy7RUhmE7KZwizxkl3Sv8Nn6z0HMk= =TpHq -----END PGP SIGNATURE-----