File _patchinfo of Package patchinfo.41826
<patchinfo incident="41826">
<issue tracker="bnc" id="1253333">VUL-0: CVE-2025-12818: postgresql: integer overflow in allocation-size calculations within libpq</issue>
<issue tracker="bnc" id="1253332">VUL-0: CVE-2025-12817: postgresql: missing check for CREATE privileges on the schema in CREATE STATISTICS</issue>
<issue tracker="cve" id="2025-12817"/>
<issue tracker="cve" id="2025-12818"/>
<packager>rmax</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for postgresql13</summary>
<description>This update for postgresql13 fixes the following issues:
Upgraded to 13.23:
- CVE-2025-12817: Fixed missing check for CREATE privileges on the schema in CREATE STATISTICS (bsc#1253332)
- CVE-2025-12818: Fixed integer overflow in allocation-size calculations within libpq (bsc#1253333)
Other fixes:
- Use %product_libs_llvm_ver to determine the LLVM version.
- Remove conditionals for obsolete PostgreSQL releases.
- Sync spec file from version 18.
</description>
</patchinfo>