The WarehousePG documentation describes the latest version of WarehousePG 7.
| Version | Release date |
|---|---|
| 7.6.0-WHPG | 25 September 2026 |
| 7.5.0-WHPG | 8 June 2026 |
| 7.4.1-WHPG | 11 June 2026 |
| 7.4.0-WHPG | 7 April 2026 |
| 7.3.2-WHPG | 11 June 2026 |
| 7.3.1-WHPG | 30 January 2026 |
| 7.3.0-WHPG | 14 November 2025 |
| 7.2.2-WHPG | 17 November 2025 |
| 7.2.1-WHPG | 15 May 2025 |
WarehousePG 7.6.0-WHPG
Released: 25 September 2026
WarehousePG 7.6.0-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Critical security fix: server-side file functions were executable by any role
pg_file_write(), pg_file_rename(), pg_file_unlink(), and pg_logdir_ls() were executable by any database role, letting any authenticated user write, rename, or delete files in the coordinator's data and log directories, including postgresql.auto.conf and pg_hba.conf, and list server log file names. These functions now require superuser privileges or membership in pg_write_server_files (pg_read_server_files for pg_logdir_ls()).
This issue affects every WarehousePG 7 release before 7.6.0-WHPG. WarehousePG 6 isn't affected. Upgrade to 7.6.0-WHPG as soon as possible. See Applying the file function privilege fix for the required follow-up step and a mitigation script if you can't upgrade right away.
Note
WarehousePG 7.6.0 also changes some behaviors that need action when you upgrade, including dump output format, resource group CPUSET parsing, and pgcrypto and psql behavior. Review Replacing binaries and restarting WHPG before you upgrade.
New features
- Added support for
CREATE TABLE ... AS ... DISTRIBUTED COORDINATOR ONLY, givingCREATE TABLE ASa native coordinator-only path. - Added the
whpg_dispatch_topology_fileconfiguration parameter, along with the read-onlywhpg_dispatch_topology_state, letting a hot-standby dispatcher resolve dispatch and interconnect addresses from a topology file instead ofgp_segment_configuration. - Added PowerPC ppc64le support for WarehousePG 7. See Platform Requirements.
- Added resource groups to the
pg_stat_operationssystem view.
Enhancements
gpcheckperfnow mirrors its output to~/gpAdminLogs/gpcheckperf_<date>.log.- Lowered the dump syncmate snapshot log message from
LOGtoDEBUG5to reduce log volume.
Bug fixes
- Fixed a heap overrun in
gp_get_endpoints()when parallel retrieve cursor endpoints exist in more than one database on the coordinator. - Fixed autovacuum's alive-session table and the resource group I/O-limit table to hash fixed-size keys as binary data, preventing out-of-bounds reads and key aliasing.
- Fixed a
SIGSEGVwhen rewriting multiple distinct-qualified aggregates (MDQA) over a partitioned table in the ORCA optimizer. - Fixed an ORCA crash on ordered-set aggregates without direct arguments, such as
mode() WITHIN GROUP (...). - Fixed duplicated rows from
percentile_cont()andpercentile_disc()when they are the only aggregates over a grouped subquery. - Fixed a scalar-subquery
count()result incorrectly folding to0when the aggregate row was eliminated by a filter or join, and fixed a use-after-free of a bare-variableHAVINGqualifier during query normalization. - Fixed a coordinator
SIGSEGVin extended-statistics estimation after incremental group statistics. - Fixed CTE consumer cardinality collapsing when join predicates are re-applied at every step of statistics calculation, which under-estimated rows and caused spilling to disk.
- Fixed functional-dependency selectivity estimation, which the optimizer was dropping entirely, and fixed the estimate collapsing to one row when dependency statistics outlive a column's statistics.
- Fixed ORCA planning wrong results for indexes whose key collation differs from the type default.
- Fixed a backend crash on correlated subqueries that join a coordinator-only catalog table with a distributed table.
- Fixed a planner crash on
LEFT JOIN LATERALover aUNION ALLthat mixes a distributed-table arm with aVALUESarm and has an outer-query column in the target list. The query now fails with the ordinarycould not devise a query planerror instead of crashing. - Fixed direct dispatch silently dropping rows for queries with a strewn-locus child, such as
gp_dist_random()over a view with noFROMclause. - Fixed
ERROR: ORDER/GROUP BY expression not found in targetlistfor a correlatedEXISTSsublink with both an aggregate and aGROUP BYclause. - Fixed append-optimized column-oriented (AOCO) unique indexes to catch conflicting keys consistently, preventing duplicate primary keys after
gpfdistloads. - Fixed
ERROR: ... is out of scanning scope for target relfilenodeon append-optimized index fetches that run concurrently withVACUUM. - Fixed wrong results from the heap scan visibility cache for tuples carrying a combo command ID.
- Fixed a
PGresultleak on the query dispatcher for every distributed transaction protocol command. - Fixed
execCurrentOf()to initialize the current table OID on the query dispatcher path for non-partitioned tables, and fixedversion()to honor lightweight tags. - Fixed
gp_dump_query_oids()to expand materialized views at any nesting depth, sominireprocollects the DDL of tables behind nested materialized views. - Fixed
ALTER COLLATION ... REFRESH VERSIONto dispatch to segments instead of updating only the coordinator's catalog. - Fixed
ddl_command_endevent triggers failing or silently skippingCREATE EXTERNAL TABLE. - Added
CREATE PROTOCOLandALTER TYPE ... SET DEFAULT ENCODINGto the commands collected forddl_command_endevent triggers. - Fixed
pg_event_trigger_ddl_commands()erroring withcache lookup failedfor objects dropped by the same statement, which brokeSPLIT PARTITIONandSPLIT DEFAULT PARTITIONwhen an event trigger is installed. - Fixed the reversed coordinator and segment split of the resource group
CPUSETconfiguration parameter. - Fixed
gp_toolkit.gp_workfile_entriesinflating workfile metrics once per gang process. - Fixed
gploadraisingUnboundLocalError: has_seq_boolwhen the target table has aSERIALcolumn. - Fixed
gploadto pass arguments through its shell wrapper without word splitting, so paths with spaces work, and to fall back to$HOME/gpAdminLogswhen the configured log file is unusable. - Fixed
analyzedbraising[Errno 9] Bad file descriptorwhen the coordinator data directory is on NFS or EFS. - Fixed
gpMgmtremote execution to report SSH failures instead of returning success with empty output. - Fixed PL/Perl array and tied-container handling for non-rectangular arrays, forged
ARRAYobjects, tiedSETOFarray references, andNULLSV *values. - Fixed
pgcryptoto reset the global debug handler after a PGP pipeline error, so later calls no longer emit straydbg:notices. - Fixed the
datalencalculation intsvectorrecv(), which over-counted position data and could set a varlena size larger than the allocation. - Fixed append-optimized column-oriented (AOCO) table compression changes made with
ALTER TABLE ... SET/RESET (compresstype, compresslevel, blocksize)to propagate to every column without its own explicitENCODING, and to actually re-encode existing data. The rewrite previously ran and paid its full I/O cost, but every column kept its old codec. - Fixed hot-standby readers of append-optimized tables hitting truncated or refilled segment files after a
VACUUMrecycled segment files out from under an older snapshot. - Fixed a hot standby losing every query with
could not access status of transaction Nafter the primary truncatedpg_distributedlog. - Fixed a segfault on a hot-standby coordinator at connection time in multi-host deployments where a host carries only mirror rows.
Security
- Fixed memory disclosure and a possible crash from casting
oid[]orint2[]arrays tooidvectororint2vectorwithout validating array dimensions and null entries, for CVE-2026-2003. - Required superuser to attach a non-built-in selectivity estimator in
CREATE OPERATORandALTER OPERATOR, and hardened the built-in estimators and theintarrayextension's_int_matchsel()function against incorrect operand types, for CVE-2026-2004. - Fixed a buffer overflow in
pgcrypto'spgp_pub_decrypt_bytea()function by bounding the session key length, for CVE-2026-2005. - Fixed a one-byte overread in GB18030 multibyte character handling and replaced
pg_mblen()with length-checked variants across the server, for CVE-2025-4207 and CVE-2026-2006. - Fixed out-of-bound reads in
ascii()on invalid multibyte input, along with related fixes toEUC_CNlength handling,mb2wchar()on short input, PGP-decrypted text encoding validation, andSUBSTRING()on toasted multibyte values, for CVE-2026-18024. - Fixed selectivity estimation performing its permission checks against inheritance children instead of the parent table, which let row-level security policies and security-barrier views be bypassed, for CVE-2025-8713.
- Wrapped plain-text output from
pg_dump,pg_dumpall, andpg_restoreinpsql\restrictand\unrestrictmarkers, so a malicious server can't inject meta-commands executed at restore time, for CVE-2025-8714. - Stopped
psqlfrom performing backquote expansion on the\unrestrictargument, for CVE-2026-18408. - Stopped
psqlfrom executing in-lineCOPY ... FROM STDINdata as SQL after theCOPYcommand fails, for CVE-2026-6464. - Added a
USAGEprivilege check on types used by stored expressions,ALTER TABLE ... OF, andCREATE TYPE ... AS RANGE, for CVE-2026-6470. - Hardened
tsvectorandtsqueryconstruction against integer overflows inarray_to_tsvector(),tsvectorrecv(),tsvectorout(), andQTN2QT(), for CVE-2026-14662. - Fixed
pgcryptoto fail cipher initialization errors during PGP encryption instead of emitting unencrypted data, and added theignore-cipher-failure=1decryption option, passed in theoptionsargument ofpgp_sym_decrypt()andpgp_pub_decrypt(), to read back affected data, for CVE-2026-14663. - Fixed a buffer overrun in regular expression match and split functions on invalidly encoded input, for CVE-2026-14664.
- Fixed
scalarineqsel()to verify a constant's data type before treating it as atid, for CVE-2026-14668. - Bounded the copy of overlength time zone abbreviations in
to_char(), and hardened PL/Perl against tied Perl arrays and hashes, for CVE-2026-14669 and CVE-2026-14670. - Removed a stale per-backend plan cache in
contrib/spi/refint'scheck_foreign_key()function that caused type confusion, and fixed aNULL-key segfault, for CVE-2026-14671. - Used overflow-safe allocation in
pltclandplperl, for CVE-2026-14677. - Fixed
pg_trgm'sgtrgm_picksplit()function reading past the end of the signature buffer for all-true datums, for CVE-2026-14678. - Guarded fixed-size argument arrays in the parser, executor, fmgr, PL/pgSQL, and
pltclagainst extreme argument counts, for CVE-2026-14679. - Rejected SQL-level calls to functions that take or return the
internaltype, and made aggregate combine functions returnNULLhonestly, for CVE-2026-14680. - Fixed integer overflow and out-of-bounds writes in
fuzzystrmatch's Levenshtein distance functions by computing distances in 64-bit arithmetic, for CVE-2026-15742. - Fixed a memory disclosure and possible remote code execution vulnerability from a mismatch between a portal's tuple descriptor and the query's actual output during
EXECUTEorFETCH, for CVE-2026-16239. - Fixed
pg_dumpassuming a fixed bound on the length ofpg_proc.protrftypes, for CVE-2026-19385.
WarehousePG 7.5.0-WHPG
Released: 8 June 2026
WarehousePG 7.5.0-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Upgrade considerations
Python 3.11 requirement for PL/Python
WarehousePG 7.5.0 upgrades PL/Python from Python 3.9 to Python 3.11. The PL/Python interpreter now links against /usr/bin/python3.11 and requires the following packages on every node in the cluster:
python3.11python3.11-psycopg2python3.11-pyyaml
On internet-connected clusters, the package manager installs these dependencies automatically when upgrading. On air-gapped clusters, install them manually on all nodes before upgrading. See Performing a minor upgrade for details.
New features
- Added support for renaming resource groups with the new
ALTER RESOURCE GROUP <name> SET NAME <new_name>syntax.
Enhancements
- Bundled the LLVM 21 library (
libLLVM.so) with the WarehousePG package. LLVM and Clang no longer need to be installed separately on cluster nodes for JIT compilation. - Improved performance of AO/AOCS table sampling by using an adaptive tuples-per-block estimation algorithm.
- Optimized the
gp_toolkit.gp_resgroup_configview for improved query performance.
Bug fixes
- Fixed
gpconfigto correctly respect thegp_resource_group_cgroup_parentconfiguration parameter when verifying thecgrouproot. - Fixed a buffer over-read in
TranslateDXLDatumGenericToScalar()that could cause instability in the ORCA optimizer. - Fixed incorrect distinct qualified aggregate (DQA) type classification under
HAVINGclauses that could produce incorrect query results. - Fixed an issue where
RelabelTypewas not stripped when pulling up distribution keys through binary-compatible casts in partitioned table scans, which could produce incorrect query plans.
Security
- Hardened multiple modules against integer overflow vulnerabilities for CVE-2026-6473, including ltree,
ts_headline, intarray, the regex engine,unicode_normalize,formatting.c,array_agg, and the hstore PL/Perl and PL/Python extensions. - Fixed a format-string vulnerability in
timeofday()for CVE-2026-6474 where a crafted time zone setting could abuse thepg_strftime()%Zformat specifier to cause crashes or corrupt server memory. - Fixed a path traversal vulnerability in
pg_rewindfor CVE-2026-6475 where paths received from a rogue endpoint could overwrite files outside the target directory. - Fixed a buffer overrun in the frontend large object interface (
libpq) for CVE-2026-6477 wherePQfn()could write beyond the end of the result buffer when the server returned more data than requested. - Added timing-safe comparisons for secret material in all authentication paths for CVE-2026-6478, covering SCRAM, MD5, RADIUS, and plain authentication methods.
- Fixed a stack overflow vulnerability in
ProcessStartupPacket()for CVE-2026-6479 where a malicious client could alternate SSL and GSS negotiation requests indefinitely to exhaust server stack space. - Fixed an SQL injection and buffer overrun vulnerability in the
refintcontrib module for CVE-2026-6637.
WarehousePG 7.4.1-WHPG
Released: 11 June 2026
WarehousePG 7.4.1-WHPG includes the following bug fixes and other changes:
Bug fixes
- Fixed a build failure with LLVM 21 in the JIT compilation subsystem.
Security
- Hardened multiple modules against integer overflow vulnerabilities for CVE-2026-6473, including ltree,
ts_headline, intarray, the regex engine,unicode_normalize,formatting.c,array_agg, and the hstore PL/Perl and PL/Python extensions. - Fixed a format-string vulnerability in
timeofday()for CVE-2026-6474 where a crafted time zone setting could abuse thepg_strftime()%Zformat specifier to cause crashes or corrupt server memory. - Fixed a path traversal vulnerability in
pg_rewindfor CVE-2026-6475 where paths received from a rogue endpoint could overwrite files outside the target directory. - Fixed a buffer overrun in the frontend large object interface (
libpq) for CVE-2026-6477 wherePQfn()could write beyond the end of the result buffer when the server returned more data than requested. - Added timing-safe comparisons for secret material in all authentication paths for CVE-2026-6478, covering SCRAM, MD5, RADIUS, and plain authentication methods.
- Fixed a stack overflow vulnerability in
ProcessStartupPacket()for CVE-2026-6479 where a malicious client could alternate SSL and GSS negotiation requests indefinitely to exhaust server stack space. - Fixed an SQL injection and buffer overrun vulnerability in the
refintcontrib module for CVE-2026-6637.
WarehousePG 7.4.0-WHPG
Released: 7 April 2026
WarehousePG 7.4.0-WHPG includes the following new features, enhancements, bug fixes, and other changes:
New features
- Introduced
pg_stat_statementsfor WarehousePG, extending standard PostgreSQL statistics collection to include all segment nodes. - Implemented
DISTRIBUTED COORDINATOR ONLYtables to allow metadata to reside exclusively on the coordinator node, supporting specialized use cases where extensions must access data during early-stage query processing before distributed execution begins.
Enhancements
- Added automatic fallback to the Postgres planner when
vchordindexes are present. - Simplified the
gp_stat_progress_copy_summaryview and corrected issues whereNULLvalues were improperly handled. - Enabled the
get_ao_compression_ratio()function to execute in query executors. - Optimized internal cluster communications by improving the performance of Interconnect (IC) UDP processes and eliminating stale file descriptor warnings, resulting in more stable and faster data exchange between nodes.
Bug fixes
- Improved query planner accuracy for anti-joins and left anti-semi joins by resolving a double-calculation error in join selectivity. This fix resolves issues where underestimated join costs led to inefficient query plans, resulting in significantly faster performance for complex analytical workloads.
- Resolved critical stability issues in the ORCA optimizer, including fixes for segmentation faults, infinite recursion, and improper motion creation on QE slices.
- Fixed ORCA
regr_countscalar subquery decorrelation to prevent planning errors during complex aggregations. - Resolved an issue where ORCA failed to handle views with unused CTEs after changes were made to underlying table structures.
- Improved DXL translation by fixing the handling of required but unused columns.
- Fixed
gpcheckcatinconsistencies encountered when using the SCRAM-SHA-256 authentication algorithm. - Ensured
initdbonly evaluateserrnowhen a system call explicitly fails, preventing successful directory operations from being incorrectly reported as errors due to residual error codes from previous tasks. - Ensured
isolation2test compatibility for Python 3.14 by explicitly setting the subprocess start method tofork, preventingcannot pickle TextIOWrappererrors caused by the change in Python's default process spawning behavior on Linux.
Security
- Mitigated SQL injection risks in
pg_dumpandpg_dumpallfor CVE-2025-8715 by ensuring object names containing newlines are properly sanitized before being written as comments in backup files, preventing a vulnerability where maliciously crafted names could execute arbitrary SQL during the restore process. - Fixed a heap buffer overflow vulnerability in libpq for CVE-2025-12818 by hardening memory allocation against integer overflows. This change implements stricter
size_tcalculations for large, untrusted inputs to ensure allocated buffers are sufficient for their contents.
WarehousePG 7.3.2-WHPG
Released: 11 June 2026
WarehousePG 7.3.2-WHPG includes the following bug fixes and other changes:
Bug fixes
- Fixed a build failure with LLVM 21 in the JIT compilation subsystem.
Security
- Hardened multiple modules against integer overflow vulnerabilities for CVE-2026-6473, including ltree,
ts_headline, intarray, the regex engine,unicode_normalize,formatting.c,array_agg, and the hstore PL/Perl and PL/Python extensions. - Fixed a format-string vulnerability in
timeofday()for CVE-2026-6474 where a crafted time zone setting could abuse thepg_strftime()%Zformat specifier to cause crashes or corrupt server memory. - Fixed a path traversal vulnerability in
pg_rewindfor CVE-2026-6475 where paths received from a rogue endpoint could overwrite files outside the target directory. - Fixed a buffer overrun in the frontend large object interface (
libpq) for CVE-2026-6477 wherePQfn()could write beyond the end of the result buffer when the server returned more data than requested. - Added timing-safe comparisons for secret material in all authentication paths for CVE-2026-6478, covering SCRAM, MD5, RADIUS, and plain authentication methods.
- Fixed a stack overflow vulnerability in
ProcessStartupPacket()for CVE-2026-6479 where a malicious client could alternate SSL and GSS negotiation requests indefinitely to exhaust server stack space. - Fixed an SQL injection and buffer overrun vulnerability in the
refintcontrib module for CVE-2026-6637.
WarehousePG 7.3.1-WHPG
Released: 30 January 2026
WarehousePG 7.3.1-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Enhancements
- Allowed parallel workers to retrieve combo command ids and distributed snapshots directly from Dynamic Shared Memory (DSM).
- Implemented pipes instead of sockets to terminate
poll()blocking immediately for faster process signaling. - Added native support for executing
customscanswithin the engine. - Made the
rescanforeignscancallback optional for foreign data wrappers to improve FDW compatibility. - Configured GDD to push transaction ids into waitgxids so the query dispatcher can wait on them effectively.
- Appended the WarehousePG name to the end of the version string for better identification.
- Replaced
spinlockswithlwlocksat the instrumentation header to reduce CPU contention. - Implemented pipes instead of sockets to terminate
poll()blocking immediately for faster process signaling. - Updated the build instructions for RHEL8 and RHEL9 systems.
- Updated regression test outputs to reflect recent FDW rescan changes.
Bug fixes
- Fixed a critical issue with shared snapshots in DSM to prevent potential data loss.
- Resolved a crash in ORCA when processing percentile aggregates.
- Fixed a crash and incorrect results when using distinct qualified aggregates (DQA) with a filter clause.
- Initialized missing
plannedstmtfields in ORCA to prevent execution errors. - Corrected the handling of required but unused columns during DXL translation.
- Fixed an incorrect join type assignment when pulling up expression sub-links.
- Adjusted the severity level to warning in
ftsprobe.cunder specific conditions to reduce log noise. - Removed the
guc_no_show_allflag for thearchive_timeoutsetting. - Fixed an invalid escape sequence in the
recoveryinfo.pyscript. - Resolved an intermittent failure case in the
pg_waldumptests. - Corrected the return type of
gddctxgetmaxvid()to useDistributedTransactionId(uint64). - Removed the deprecated
pkg_resourcesdependency from the Python environment.
WarehousePG 7.3.0-WHPG
Released: 14 November 2025
WarehousePG 7.3.0-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Enhancements
- Enabled parallel workers context for index builds to improve creation speed.
- Merged Postgres 12
llvmchanges and implemented explicitllvmcontextreffor JIT inlining. - Configured the system to insert WAL records uncompressed if compression fails, ensuring write continuity.
- Updated the copy utility to print the specific
errnofor program pipes. - Prevented the sorting of in-memory tuples when a process has already been interrupted.
- Enabled builds for the
intarrayandunaccentextensions. - Updated
waitgxidsto useint64for better handling of transaction ids. - Added support for PL/Python2 testing.
- Improved the reliability of error detection in status_check cases.
- Updated the PR template and
.editorconfigsettings.
Bug fixes
- High availability: Fixed mirror promotion failures related to WAL segment renaming.
- Resolved a
VACUUMissue onAOCStables following an abortedADD COLUMNtransaction. - Corrected
pg_exttableview outputs specifically for ARM systems. - Implemented recursive calls in the plan walker for
MergeAppendto ensure plan integrity. - Fixed a logic error involving
SubPlan PlaceHolderVar. - Removed extra blank lines in
EXPLAINoutput. - Silenced harmless
fsyncerrors when parent directories are removed. - Fixed a
NULLpointer error duringCOPY (SELECT) TOoption validation. - Dispatched ICU collation comments correctly.
- Stopped reporting
compresstype,zlib, orzstderrors when not in the validation phase. - Fixed inconsistent test cases for
REINDEX TABLE,REINDEX INDEX, andEXPLAIN FORMAT. - Fixed the
gpcheckcatmix_distribution_policytest. - Replaced the deprecated Python pipes module.
- Removed
gsutilfrom developer requirements.
Security
- Included a fix for CVE-2025-1094.
WarehousePG 7.2.2-WHPG
Released: 17 November 2025
WarehousePG 7.2.2-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Enhancements
- Enabled parallel workers context for index builds to reduce execution time.
- Optimized resource usage by skipping the sorting of in-memory tuples when a process is interrupted.
- Configured WAL records to be inserted uncompressed as a fallback if compression fails.
- Enhanced diagnostic output by printing the specific
errnofor copy program pipes. - Improved concurrency handling by using
int64forwaitgxids. - Enabled the
unaccentextension by default. - Added PL/Python2 testing support for WarehousePG 7 environments.
- Improved the reliability of error detection for
status_checkoperations.
Bug fixes
- Fixed a failure in mirror promotion caused by WAL segment renaming.
- Resolved a vacuuming issue on
AOCStables that occurred after aborted add column transactions. - Corrected
pg_exttableview data for ARM-based architectures. - Implemented recursive calls in the plan walker for
mergeappendto ensure correct plan traversal. - Fixed a sub-plan bug related to placeholder variables.
- Suppressed unnecessary blank lines in
EXPLAINoutput. - Prevented harmless
fsyncerrors from being reported when parent directories are missing. - Ensured ICU collation comments are dispatched correctly to maintain metadata.
- Stopped reporting
compresstypeerrors during the non-validation phase. - Silenced
zlibandzstdreloptionerrors during the non-validation phase. - Reverted the fault tolerance service (FTS) enablement for mirror-less clusters.
- Resolved intermittent test failures in
REINDEX TABLEandREINDEX INDEXcases. - Fixed an intermittent failure in the
explain_formattest case. - Fixed the
gpcheckcatmix_distribution_policytest. - Removed the
gsutildependency from development requirements.
Security
- Included a fix for CVE-2025-1094.
WarehousePG 7.2.1-WHPG
Released: 15 May 2025 WarehousePG 7.2.1-WHPG includes the following new features, enhancements, bug fixes, and other changes:
Enhancements
- Fixed a
work_memreference in hash aggregates to ensure planned memory is fully utilized and reduce unnecessary disk spills.
Bug fixes
- Resolved a
gpstartfailure caused by adouble free or corruptionerror when using OpenSSL 3.2.2. - Fixed a bug in the Postgres planner where correlated subqueries returned incorrect results due to improper
placeholdervarhandling. - Resolved an
unexpected gang sizeerror occasionally encountered in the Postgres planner. - Initialized
attnumswithentriesto prevent failures during concurrent-only (CO) table rewrites.
Security
- Included a fix for CVE-2023-5869.
- Included a fix for CVE-2024-7348.
- Included a fix for CVE-2024-10979.
- Included a fix for CVE-2024-10976.
- Included a fix for CVE-2022-41862.
- Included a fix for CVE-2023-39417.
- Included a fix for CVE-2024-10978.
- Included a fix for CVE-2024-0978.
- Included a fix for CVE-2024-10977.
- Included a fix for CVE-2023-5870.
- Included a fix for CVE-2023-5868.
- Included a fix for CVE-2024-0985.