-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 18 Feb 2025 11:59:37 +0100 Source: postgresql-15 Binary: libecpg-compat3 libecpg-compat3-dbgsym libecpg-dev libecpg-dev-dbgsym libecpg6 libecpg6-dbgsym libpgtypes3 libpgtypes3-dbgsym libpq-dev libpq5 libpq5-dbgsym postgresql-15 postgresql-15-dbgsym postgresql-client-15 postgresql-client-15-dbgsym postgresql-plperl-15 postgresql-plperl-15-dbgsym postgresql-plpython3-15 postgresql-plpython3-15-dbgsym postgresql-pltcl-15 postgresql-pltcl-15-dbgsym postgresql-server-dev-15 Architecture: ppc64el Version: 15.12-0+deb12u1 Distribution: bookworm Urgency: medium Maintainer: ppc64el Build Daemon (ppc64el-osuosl-01) Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 15 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-15 - The World's Most Advanced Open Source Relational Database postgresql-client-15 - front-end programs for PostgreSQL 15 postgresql-plperl-15 - PL/Perl procedural language for PostgreSQL 15 postgresql-plpython3-15 - PL/Python 3 procedural language for PostgreSQL 15 postgresql-pltcl-15 - PL/Tcl procedural language for PostgreSQL 15 postgresql-server-dev-15 - development files for PostgreSQL 15 server-side programming Changes: postgresql-15 (15.12-0+deb12u1) bookworm; urgency=medium . * New upstream version 15.12. . + Improve behavior of libpq's quoting functions (Andres Freund, Tom Lane) . The changes made for CVE-2025-1094 had one serious oversight: PQescapeLiteral() and PQescapeIdentifier() failed to honor their string length parameter, instead always reading to the input string's trailing null. This resulted in including unwanted text in the output, if the caller intended to truncate the string via the length parameter. With very bad luck it could cause a crash due to reading off the end of memory. . In addition, modify all these quoting functions so that when invalid encoding is detected, an invalid sequence is substituted for just the first byte of the presumed character, not all of it. This reduces the risk of problems if a calling application performs additional processing on the quoted string. Checksums-Sha1: 2479985074ed3047234583da2a10ef221e1ababf 17580 libecpg-compat3-dbgsym_15.12-0+deb12u1_ppc64el.deb 208168b3559e96cce8055e23bdb6f5fb7a9786e5 19864 libecpg-compat3_15.12-0+deb12u1_ppc64el.deb a55769e4d03e050e8a6ac651b577ae2c489222e9 224232 libecpg-dev-dbgsym_15.12-0+deb12u1_ppc64el.deb 3d7b98183c874c287ee58139d2c2b64b9df7ad02 301188 libecpg-dev_15.12-0+deb12u1_ppc64el.deb c2f1b7360d6e4fcc2f0ae7e2136070e988be94e5 113940 libecpg6-dbgsym_15.12-0+deb12u1_ppc64el.deb a28ef28d2e42560bd6cb2ac81f5e6c5d25e48631 66812 libecpg6_15.12-0+deb12u1_ppc64el.deb a464c4628285f2f5c4df4bb9294c596ea1b613ef 90900 libpgtypes3-dbgsym_15.12-0+deb12u1_ppc64el.deb 0f603cf4dbdb711e26f955b5fbaba6dfb93ee609 50444 libpgtypes3_15.12-0+deb12u1_ppc64el.deb e1283f85277c6ffce9709f5df95dd077dc1f6f76 158564 libpq-dev_15.12-0+deb12u1_ppc64el.deb 516583bc26e9ec1978718b5a0b09f396810eb8a8 285980 libpq5-dbgsym_15.12-0+deb12u1_ppc64el.deb 04a7bf11bc884c87ddbfaf98a44bd6d001a6257e 203224 libpq5_15.12-0+deb12u1_ppc64el.deb 908d2123b4fdef9f5b9c0b01cda158267c7a8fbf 16772048 postgresql-15-dbgsym_15.12-0+deb12u1_ppc64el.deb d913514e33253be08f4825d3812797f9906c3e87 17178 postgresql-15_15.12-0+deb12u1_ppc64el-buildd.buildinfo 4387373fc73b7824e97cbaaa8ea7297cf53c7fa6 17154424 postgresql-15_15.12-0+deb12u1_ppc64el.deb b93a95337b19528fe4c134f298df14a530f40ac7 2512432 postgresql-client-15-dbgsym_15.12-0+deb12u1_ppc64el.deb ca58da57ecba0fe500477af930bf5b3a6962d8fb 1750440 postgresql-client-15_15.12-0+deb12u1_ppc64el.deb fe9a931c41703eac251047a459f96ef14207c8f0 186420 postgresql-plperl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 5fa65fed26d392009e4d1842fbc6bd5452f5539a 92732 postgresql-plperl-15_15.12-0+deb12u1_ppc64el.deb 7ec1cb3a92ca375f0cbfbda88f7b2ea34862e9f8 176776 postgresql-plpython3-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 323e9038693b227d48be1013263162d5fb5f6cce 113104 postgresql-plpython3-15_15.12-0+deb12u1_ppc64el.deb 8f6a014306e5ea3cc6d5a92ab12c8fc24d8afae1 80064 postgresql-pltcl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb ff49105fa8e8507d767ce529c6271b28644804d5 44100 postgresql-pltcl-15_15.12-0+deb12u1_ppc64el.deb b2e751258fb6c97a015bdcbcc0a1235d82fc16e9 1163092 postgresql-server-dev-15_15.12-0+deb12u1_ppc64el.deb Checksums-Sha256: fa2f84a32b5bcaa29ab0b03527a9ccb70df900c5495d1fbbc16ed94cdff05aa2 17580 libecpg-compat3-dbgsym_15.12-0+deb12u1_ppc64el.deb 9d87bc1e9ff0a457883998ebb1f2c9e9f44348bacd00c06004300fad2f94fdf1 19864 libecpg-compat3_15.12-0+deb12u1_ppc64el.deb 824a4c31d5229f7b69aab0093f0b82a89fd5c1f6c29b86e58f1b648ff908b31f 224232 libecpg-dev-dbgsym_15.12-0+deb12u1_ppc64el.deb bc91f3f228d927ab0cd79d98a20f60435bdc594547815f9500b96d9921b8ebf3 301188 libecpg-dev_15.12-0+deb12u1_ppc64el.deb b69cd041a8c7b9ba12359e3fc20eae7ada237fb5282857b305395e731ded97ad 113940 libecpg6-dbgsym_15.12-0+deb12u1_ppc64el.deb 75754e1adcb042540a7c690d88d00ee8883c5aef968dbf32aba7c6170a24f5e4 66812 libecpg6_15.12-0+deb12u1_ppc64el.deb 6ccf6e2d4b2c4e994cf3a9114aea44505782091752fa2f4c2028ad77fe3fe743 90900 libpgtypes3-dbgsym_15.12-0+deb12u1_ppc64el.deb e2b99f16544576323cb70ce5146edf868e2bb1a3de28ad99c9c0855894004c0d 50444 libpgtypes3_15.12-0+deb12u1_ppc64el.deb d033dbe6267e96dd5c5201526cc7a615f5640349bb2c04c4caa31447acc33c4d 158564 libpq-dev_15.12-0+deb12u1_ppc64el.deb 2363285ade711e72c4737b7c32b469eced69381f9a39e6a2afd35feac30869fe 285980 libpq5-dbgsym_15.12-0+deb12u1_ppc64el.deb f863acbf727e85786af6b52500d3281a4569593393d659ba6d75a15afc82f63f 203224 libpq5_15.12-0+deb12u1_ppc64el.deb d65a18f2bc7badeea943dbcfebee3f92bdbc85bcaced979ab384908b2f79c6d6 16772048 postgresql-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 1f6d8f4c5cdf9d00d938cd0ce11491ba36e29e32be7bf5d1af78abd036578ea9 17178 postgresql-15_15.12-0+deb12u1_ppc64el-buildd.buildinfo 46df6b05b0086e9201bac44364bc08b7d23c09c46604052fa80ce83001a0320e 17154424 postgresql-15_15.12-0+deb12u1_ppc64el.deb aa43b037b681edb963112a76601e671f7ccc2bd0767d35ee444b9f47ac923ce3 2512432 postgresql-client-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 28039003b9a84407b8f83661cc3213d2e146980f2d92c98368d9dcddcd27222b 1750440 postgresql-client-15_15.12-0+deb12u1_ppc64el.deb bc05a58cb298b0d3c5d17ac01e94d0ddbd5239165b406dbdc4413d26d3345482 186420 postgresql-plperl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 2478e1c086bc158c8db7f530b9620f1911b383bf9c2ffe10f698ecc573ed8db5 92732 postgresql-plperl-15_15.12-0+deb12u1_ppc64el.deb 0fc2b3b49da511fe4c23088fc1df87608f619586c953996f9e77dd6142219621 176776 postgresql-plpython3-15-dbgsym_15.12-0+deb12u1_ppc64el.deb d46f5f741bd777526d8d015f1a937e08a162d47f5f64778261b78edf6e6f9988 113104 postgresql-plpython3-15_15.12-0+deb12u1_ppc64el.deb 079a0b5c5e1a292f65e8381d264208cd12a0ebb49dd32fa2d9984e286030523e 80064 postgresql-pltcl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb 0439615dfb633693e7447da911be3f5ef7050bd3f288beef210f86ff1fc800d6 44100 postgresql-pltcl-15_15.12-0+deb12u1_ppc64el.deb 65a993b91eaa0676acb2240d2b2a375c27ffa96c3533d018c372582fa0213aa0 1163092 postgresql-server-dev-15_15.12-0+deb12u1_ppc64el.deb Files: 61b791993d6a3f83647ef595a154f64f 17580 debug optional libecpg-compat3-dbgsym_15.12-0+deb12u1_ppc64el.deb 068229ca908d216a5833a234cb220365 19864 libs optional libecpg-compat3_15.12-0+deb12u1_ppc64el.deb 24a239e75fc43fa55787c5090f489c7d 224232 debug optional libecpg-dev-dbgsym_15.12-0+deb12u1_ppc64el.deb 308892e013e56986bbb6e58e3e1c6a9b 301188 libdevel optional libecpg-dev_15.12-0+deb12u1_ppc64el.deb 154d23f1b8b7c7b475275240b509c245 113940 debug optional libecpg6-dbgsym_15.12-0+deb12u1_ppc64el.deb 4501f986f2718389553f671a46ceba5d 66812 libs optional libecpg6_15.12-0+deb12u1_ppc64el.deb 0a7273e782f2ea8950e4fc2a6f78af5c 90900 debug optional libpgtypes3-dbgsym_15.12-0+deb12u1_ppc64el.deb a379c593f75c426d31924d25c825fad4 50444 libs optional libpgtypes3_15.12-0+deb12u1_ppc64el.deb 5b42ae9de8ce9218540d83ad666717a5 158564 libdevel optional libpq-dev_15.12-0+deb12u1_ppc64el.deb 6ee48df0fdc96b4363bef8ad4ef993c5 285980 debug optional libpq5-dbgsym_15.12-0+deb12u1_ppc64el.deb d8c20b4a9186dc55a995e94c0e4c7f73 203224 libs optional libpq5_15.12-0+deb12u1_ppc64el.deb 1b2387b4043175be5bf91be4dbeaa8cf 16772048 debug optional postgresql-15-dbgsym_15.12-0+deb12u1_ppc64el.deb ac3ce9979b2dafe6a66bb23247c2c312 17178 database optional postgresql-15_15.12-0+deb12u1_ppc64el-buildd.buildinfo 137136a92a46700e5f0a08cfd36c9f6d 17154424 database optional postgresql-15_15.12-0+deb12u1_ppc64el.deb b6b12c2671aa402af8e093c7edc7c8c1 2512432 debug optional postgresql-client-15-dbgsym_15.12-0+deb12u1_ppc64el.deb c4c52292a04afb16b511c6a360e16176 1750440 database optional postgresql-client-15_15.12-0+deb12u1_ppc64el.deb ffdf347f19f0453c7cf8cea604fe2ce8 186420 debug optional postgresql-plperl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb f8e624246fd3ae7677805d2056fadf1d 92732 database optional postgresql-plperl-15_15.12-0+deb12u1_ppc64el.deb 5fc1615a191defe0a0fe3d6e7f0041dc 176776 debug optional postgresql-plpython3-15-dbgsym_15.12-0+deb12u1_ppc64el.deb ed88ad1413256e1e0af90ff320c4121f 113104 database optional postgresql-plpython3-15_15.12-0+deb12u1_ppc64el.deb 19280d552f16b2091cc7a074de0bfb7c 80064 debug optional postgresql-pltcl-15-dbgsym_15.12-0+deb12u1_ppc64el.deb d9112a7de2b7f566b7452040423d07f5 44100 database optional postgresql-pltcl-15_15.12-0+deb12u1_ppc64el.deb a9cdd13a7c294bbde717c953aceea8e7 1163092 libdevel optional postgresql-server-dev-15_15.12-0+deb12u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE5v3ycPFoB5xoBEprvMjydu+xvRMFAmfDKkkACgkQvMjydu+x vRPwIBAAjDwKqlLBSwLQt27lFxahLT3jrmZbYAq+PZ9s7iHzqjJM5VFCXlRpq92U cxbhu8wJu262UykNNwM7j5J1fPml5aVjUREj01kJyvUCi1dU+OizbMV+pKyfY/bv qFUR9sHT+6+YvxjBrdW1gYBQOnXWy3+Y6Tjq5mCQAXAYAygCtEvlm+6xKVw8iG8G tF8utbZs/zXXjtsyfWRwVZN4goh1FeLl7iFe+X6f3cwCzsNbXlgojFrfOfHy43sY /Jfz9zyrGYRikpdrzjkAyJD09n+8sxr+sFEd+fJRSpoHWt2Ov5G2Arhb0WRuC2KD FV4157LEobk/rqDek0jRHl68vTDhGWpoKx5GjA4qouBcFDB2sUd4tmIFhkiaDg7C C+U/DjbtWZef2aQqWbQHq0pSE3h7NgoT3/+NYHGCNwEpNRKMcYYx7COhlCXgJraa ZsaiF2LEl4Fl1Sa7UCyoRs8wkf3yIv2H4t3zxGbB1T4qqgBBtIRbHGUiAEX+etHk h8lY9UXiN6/c5YJ5l1y8gmQkZ/SY7+BbIFg5SWy4WaJjvTcynY1i+rXIdacbNtWg jPGayqXUHi+bSLOv0hDugWb4Hu0YkrIF0XP4HQmsMQ3CqhLk8HC4RbV437MvvlgO D/Kj6pHFF0A5JeksAD+spy5BRNGkQfA3lpDjW4PjF7p8UdDOgxs= =5nCB -----END PGP SIGNATURE-----