Re: [SECURITY] DoS attack on backend possible

Поиск
Список
Период
Сортировка
От Florian Weimer
Тема Re: [SECURITY] DoS attack on backend possible
Дата
Msg-id 87znvi7out.fsf@CERT.Uni-Stuttgart.DE
обсуждение исходный текст
Ответ на Re: [SECURITY] DoS attack on backend possible  (Justin Clift <justin@postgresql.org>)
Ответы Re: [SECURITY] DoS attack on backend possible
Список pgsql-hackers
Justin Clift <justin@postgresql.org> writes:

> You guys *definitely* write scarey code.

Yes, indeed.  My code has a lot of unnecessary and error-prone input
validation checks because I don't trust the PostgreSQL parser.

That's scary.  You don't trust your database that it processes a
simple text string, yet you still believe that it keeps all the data
you store, although this involves much more complex data structures
and algorithms.

What a strange asymmetry!

-- 
Florian Weimer                       Weimer@CERT.Uni-Stuttgart.DE
University of Stuttgart           http://CERT.Uni-Stuttgart.DE/people/fw/
RUS-CERT                          fax +49-711-685-5898


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Justin Clift
Дата:
Сообщение: Re: [SECURITY] DoS attack on backend possible
Следующее
От: Rod Taylor
Дата:
Сообщение: Re: [SECURITY] DoS attack on backend possible