Re: SECURITY RELEASES: 7.2.8 - 7.3.10 - 7.4.8 - 8.0.3

Поиск
Список
Период
Сортировка
От Tom Lane
Тема Re: SECURITY RELEASES: 7.2.8 - 7.3.10 - 7.4.8 - 8.0.3
Дата
Msg-id 3165.1115817784@sss.pgh.pa.us
обсуждение исходный текст
Ответ на Re: SECURITY RELEASES: 7.2.8 - 7.3.10 - 7.4.8 - 8.0.3  (Douglas McNaught <doug@mcnaught.org>)
Список pgsql-general
Douglas McNaught <doug@mcnaught.org> writes:
> Tom Lane <tgl@sss.pgh.pa.us> writes:
>> Also, note that that message was the zero-day-security-problem response
>> to the issue, and that we since figured out cleaner responses.  If you
>> haven't yet implemented this in your own DBs, I would suggest following
>> the procedures given in the final release notes, eg
>> http://developer.postgresql.org/docs/postgres/release-7-4-8.html

> If we've already done the zero-day fix, is there any value in re-doing
> it the "cleaner" way?

Only if you care about allowing unprivileged users to create conversions
(which seems a bit useless to me, but it's in the regression tests...)

            regards, tom lane

В списке pgsql-general по дате отправления:

Предыдущее
От: Douglas McNaught
Дата:
Сообщение: Re: Fixing a too long column value in a before insert trigger or rule
Следующее
От: Thomas F.O'Connell
Дата:
Сообщение: Re: SECURITY RELEASES: 7.2.8 - 7.3.10 - 7.4.8 - 8.0.3