-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Dec 2025 19:03:31 +0100 Source: postgresql-17 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-17 postgresql-17-dbgsym postgresql-client-17 postgresql-client-17-dbgsym postgresql-plperl-17 postgresql-plperl-17-dbgsym postgresql-plpython3-17 postgresql-plpython3-17-dbgsym postgresql-pltcl-17 postgresql-pltcl-17-dbgsym postgresql-server-dev-17 postgresql-server-dev-17-dbgsym Architecture: s390x Version: 17.7-0+deb13u1 Distribution: trixie Urgency: medium Maintainer: s390x Build Daemon (zandonai) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 17 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-17 - The World's Most Advanced Open Source Relational Database postgresql-client-17 - front-end programs for PostgreSQL 17 postgresql-plperl-17 - PL/Perl procedural language for PostgreSQL 17 postgresql-plpython3-17 - PL/Python 3 procedural language for PostgreSQL 17 postgresql-pltcl-17 - PL/Tcl procedural language for PostgreSQL 17 postgresql-server-dev-17 - development files for PostgreSQL 17 server-side programming Changes: postgresql-17 (17.7-0+deb13u1) trixie; urgency=medium . * New upstream version 17.7. . + Check for CREATE privileges on the schema in CREATE STATISTICS (Jelte Fennema-Nio) . This omission allowed table owners to create statistics in any schema, potentially leading to unexpected naming conflicts. . The PostgreSQL Project thanks Jelte Fennema-Nio for reporting this problem. (CVE-2025-12817) . + Avoid integer overflow in allocation-size calculations within libpq (Jacob Champion) . Several places in libpq were not sufficiently careful about computing the required size of a memory allocation. Sufficiently large inputs could cause integer overflow, resulting in an undersized buffer, which would then lead to writing past the end of the buffer. . The PostgreSQL Project thanks Aleksey Solovev of Positive Technologies for reporting this problem. (CVE-2025-12818) Checksums-Sha1: f9437d1d9938fda22e238b111495320daf1b7023 16972 libecpg-compat3-dbgsym_17.7-0+deb13u1_s390x.deb 78380c1ffcba4f0b93a8ef0461c21277abe0747c 17052 libecpg-compat3_17.7-0+deb13u1_s390x.deb 46dcb621fe67ab51721c624a37fccb39166b3d37 231288 libecpg-dev-dbgsym_17.7-0+deb13u1_s390x.deb 1fcbf76d1f0cb0599d38500a7f337ae8b7f3b070 300164 libecpg-dev_17.7-0+deb13u1_s390x.deb 4e7c6b0515ce16686bb078e7a8ca4c90664a1b5c 115652 libecpg6-dbgsym_17.7-0+deb13u1_s390x.deb 8887b4c6fb36e8c2c6cf0dfd8c78df0989611a9c 62280 libecpg6_17.7-0+deb13u1_s390x.deb 046706929d82eb049e76fc1cf93682b43267ede3 92600 libpgtypes3-dbgsym_17.7-0+deb13u1_s390x.deb 3c090429bb766bdd756c8bf5bcb589bf150e6799 47448 libpgtypes3_17.7-0+deb13u1_s390x.deb 4e93267c2393226176459423def92796a45a3561 147392 libpq-dev_17.7-0+deb13u1_s390x.deb 8a3d953ed208cc4f9026b7b248efc1a5d51e85b6 298652 libpq5-dbgsym_17.7-0+deb13u1_s390x.deb 51c161a47e4366f9d8a5c478d9e778f949a6226d 222320 libpq5_17.7-0+deb13u1_s390x.deb 583050bc7a6185cc11d9976fb4df2dfb9c246b7f 19335124 postgresql-17-dbgsym_17.7-0+deb13u1_s390x.deb 28fb4e58244010d8eece112c58eda61bccf930dd 17005 postgresql-17_17.7-0+deb13u1_s390x-buildd.buildinfo 7c8f8d793782e04b17055e1caa6c3f2c4e1a90fa 17253240 postgresql-17_17.7-0+deb13u1_s390x.deb 2cfd3810acd7d7d7de3f72e265ba97fac8c447d1 2809144 postgresql-client-17-dbgsym_17.7-0+deb13u1_s390x.deb 8343865b91c0dc3ff14a736fbdd28f521732b0df 2008112 postgresql-client-17_17.7-0+deb13u1_s390x.deb aa039493dda74141ab993b2c33cced49eaac8795 197664 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_s390x.deb b1ee6ad4243836ca3134e434a28cc798202ba259 85044 postgresql-plperl-17_17.7-0+deb13u1_s390x.deb 5da66f282b5cf34a93dd23a4a025040fcfeb41d3 196544 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_s390x.deb d106b970f255c6e24433a8729d1f89eb8e91657e 108688 postgresql-plpython3-17_17.7-0+deb13u1_s390x.deb 1688e064c430d11a9ae8ae46ed11efadbe5bed77 84048 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_s390x.deb 855d6390d96835d1292a240cc4a3282704bb4057 42292 postgresql-pltcl-17_17.7-0+deb13u1_s390x.deb 133024de72e46132fc08b79cc3ce7665ef3462ae 55524 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_s390x.deb b93162ab8d8cbaac5d6266895ba6d2ebea4b01af 1321436 postgresql-server-dev-17_17.7-0+deb13u1_s390x.deb Checksums-Sha256: b6b22d070c63755e6f8a1a77c14839773b070c8edefcd3e7ff67e64d91db4fa4 16972 libecpg-compat3-dbgsym_17.7-0+deb13u1_s390x.deb 656fa93d2ad31643b0d6c76ed971d2a497172fc30f07ed07cd2e53a454054d9a 17052 libecpg-compat3_17.7-0+deb13u1_s390x.deb f17442438a15812e0ab9300d49474d0fa0e7de1b54ffb848252e60276f638d91 231288 libecpg-dev-dbgsym_17.7-0+deb13u1_s390x.deb 5b137524093e95e48cccda57a8dbab348f6326b58d6481fbb3209dd3d3654847 300164 libecpg-dev_17.7-0+deb13u1_s390x.deb 5291d86dbd73117ae096b7d826af1f5e53b8f1368e5bbdb444f1d7a8ace4612d 115652 libecpg6-dbgsym_17.7-0+deb13u1_s390x.deb 078ef8c727bcf74f28dba8e9927c8b4ccba04dbdaef76bc67fc677c0bfc330b8 62280 libecpg6_17.7-0+deb13u1_s390x.deb 06434b039b2d0e563f6ab0c7202336ff15f2dd4344afe308ccc4d80209c5c3c7 92600 libpgtypes3-dbgsym_17.7-0+deb13u1_s390x.deb 8f78063faf5558a029cddf71cb9fb5e76b8d6d90fb96c6066644bfb6b4f0bf10 47448 libpgtypes3_17.7-0+deb13u1_s390x.deb 3162a123b1aaa1456ed246e49b9842395d9e1d89b5e7639bd40570182bbe1750 147392 libpq-dev_17.7-0+deb13u1_s390x.deb 6deb14e484bc8adaac711dea49e5a1557d1aee8673fbec5641277f6852594c46 298652 libpq5-dbgsym_17.7-0+deb13u1_s390x.deb 1524904cc10c087f205b570e5b12eb085ba70442c31aa8794783654fb40ed138 222320 libpq5_17.7-0+deb13u1_s390x.deb d93fecdde21ff4a177cbd424deb36e2efafabeb0fc06067a1568015e66afde7b 19335124 postgresql-17-dbgsym_17.7-0+deb13u1_s390x.deb 5b05571ea6019117c86531ade4e801ab01479deb339f5e0098e70503e213e198 17005 postgresql-17_17.7-0+deb13u1_s390x-buildd.buildinfo 7c7d70d955ff31a2a8ed2d6c53d53850908930d82de3233dccf49d9a67a88c69 17253240 postgresql-17_17.7-0+deb13u1_s390x.deb d4a407f0adebe33cd97b074f31a4c437fa1afce43338014697927f0963ed5ff7 2809144 postgresql-client-17-dbgsym_17.7-0+deb13u1_s390x.deb 2b6020f9ab604a54ab3f1d7246b6ad34e79fdf469edffda40861495a1b6e3d55 2008112 postgresql-client-17_17.7-0+deb13u1_s390x.deb bfa7d1040ab6ab8d8d7a62d5c3d557c26b0c13a2b979cb212d16223383b69e79 197664 postgresql-plperl-17-dbgsym_17.7-0+deb13u1_s390x.deb b4cea3e9a137d3a6a81a2b53f063d313f4f485a62437f2c29554b904975b7bc3 85044 postgresql-plperl-17_17.7-0+deb13u1_s390x.deb f325f57d61974db08299a4416a203d26a7d8513341e205815268bdd6dfdd67b5 196544 postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_s390x.deb c30c69b6585301d0f70e0986356a4e7ca8e4549e627912dd08522d71d99bd53d 108688 postgresql-plpython3-17_17.7-0+deb13u1_s390x.deb 9034218af096fd2b96e5494dda43573f45d3496bc5dfb74d0ed87cbc315028f5 84048 postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_s390x.deb 0ccd288ef0bc8b61eaac067a7c315cca486be89d96294370f212420b1caef43e 42292 postgresql-pltcl-17_17.7-0+deb13u1_s390x.deb 86cffc592fbd4fe92e53cffb96dc424f09f49ee62e417f185914840515a184e9 55524 postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_s390x.deb 7bbff56b767e556fe10f1927352b72502c04b319efd3b7dae81233822f3f8f6b 1321436 postgresql-server-dev-17_17.7-0+deb13u1_s390x.deb Files: 1ff9b29ca61798d625e99d790b373df0 16972 debug optional libecpg-compat3-dbgsym_17.7-0+deb13u1_s390x.deb c19154cbf30aab289dd0a939d4d9144d 17052 libs optional libecpg-compat3_17.7-0+deb13u1_s390x.deb 53b828e0ead8e722c57932290c67afde 231288 debug optional libecpg-dev-dbgsym_17.7-0+deb13u1_s390x.deb 3de2353ac2d6774e3238b47083ad46e8 300164 libdevel optional libecpg-dev_17.7-0+deb13u1_s390x.deb 01de7347d54110a5791334688f1c032b 115652 debug optional libecpg6-dbgsym_17.7-0+deb13u1_s390x.deb 37f9c23e6841e778812a812b12b074f6 62280 libs optional libecpg6_17.7-0+deb13u1_s390x.deb 94d5f9dcff6e3d86eac35a73ee687153 92600 debug optional libpgtypes3-dbgsym_17.7-0+deb13u1_s390x.deb c555d7f28e88375b587b6ac67b08edc2 47448 libs optional libpgtypes3_17.7-0+deb13u1_s390x.deb 96135bef107572b5650b147b19e526bd 147392 libdevel optional libpq-dev_17.7-0+deb13u1_s390x.deb 46fc6db4833768edcef9fc24b49b916e 298652 debug optional libpq5-dbgsym_17.7-0+deb13u1_s390x.deb 5c711dac229b50740eaf34ec5ab92a06 222320 libs optional libpq5_17.7-0+deb13u1_s390x.deb 8731764f6e63f98e75b9fb3203c53f59 19335124 debug optional postgresql-17-dbgsym_17.7-0+deb13u1_s390x.deb e635ba078cfafef16e955e4673b4d061 17005 database optional postgresql-17_17.7-0+deb13u1_s390x-buildd.buildinfo c5c9475fa0dd0c79745e95ce79ff5382 17253240 database optional postgresql-17_17.7-0+deb13u1_s390x.deb 029e4041fecf65e0d4bd1c66f36a22ba 2809144 debug optional postgresql-client-17-dbgsym_17.7-0+deb13u1_s390x.deb 395ec91d25134ad723038c6832bb76cd 2008112 database optional postgresql-client-17_17.7-0+deb13u1_s390x.deb 855ee37e878f9948cfc0c921faa1bcaa 197664 debug optional postgresql-plperl-17-dbgsym_17.7-0+deb13u1_s390x.deb 6d392333b4626608321e76636221cc65 85044 database optional postgresql-plperl-17_17.7-0+deb13u1_s390x.deb aa005292178f637bd49278f4ad57fef6 196544 debug optional postgresql-plpython3-17-dbgsym_17.7-0+deb13u1_s390x.deb d7eb31990b116731c411f3ff3f135fa4 108688 database optional postgresql-plpython3-17_17.7-0+deb13u1_s390x.deb 4cb512918343e0e5339831fc6c9e7916 84048 debug optional postgresql-pltcl-17-dbgsym_17.7-0+deb13u1_s390x.deb c1bf73888ef5fca9cdfbf6883bd1c5c8 42292 database optional postgresql-pltcl-17_17.7-0+deb13u1_s390x.deb 2344e61d29203f6eb13a1308b58570ad 55524 debug optional postgresql-server-dev-17-dbgsym_17.7-0+deb13u1_s390x.deb 0905c2a37e5fdc33794753e1089e48ef 1321436 libdevel optional postgresql-server-dev-17_17.7-0+deb13u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEENly2ANlpa4eeqnluvVOPI7pYNpgFAmlUduIACgkQvVOPI7pY NpgNqg/+PhtrzjNUDaTMqeV4rtSGRNRdQuonRLeHqwGwFDnTxn9zL4oEwLWsXgEv 7d1oormiBit1NTFGioyJIk1dLXWjdNQ5th6/qsQfTw5mEskFMjsLTMD4TDDSr45b FdPneji5n0nnM2noQD2AezkIJ3APIutpdWWL6XQR20h+VVelGUnRUg4WEkbmYzZP qaspBEEU3hytuPGGp9z1kbjgMOTT6VsylL61RlzfoPGlpgvOiNouAyqZYm9baaI8 TacOOp2q+H7YsAiZKHngi+J+RyjJBcWMGyc981vEcebGpFWFkWlYg/rnL5xuXdp2 1Etich8I2cAScZ4COm3Zz1sgvkkDLz/NnmcapsMJuPjpdLnTqx8h5rBXe3eM0l0A YxCWMbHlYvsaG3FnJQ9dQfQkyzxb0fsq532udvcyPy2mKqkXUxl+AEc2GInRM+us C+IEMPiDnM33rK66hw7fbgMBVwFWUfGzvDgYrOgIGpmKHvryD5fYsG3We/BFQheV yecdOFKmLgbvxG1ZPnjlCHkmgT9iedAZMI9G8D3A5AJ5QLnEiKZYXkuHX02QmP48 uiPViy4YyknH0929rKzbC8d4xgd0Ys51APSq/FAyKHCZYHGVIU3rtwIWfWpE0Uf6 8/WYIirLhgB1j8TsPhBZ3QUZXzJew/tqKwNInLqeltdCzQnocjI= =9kpf -----END PGP SIGNATURE-----