Re: SQL injection bug for null-terminated strings?

Поиск
Список
Период
Сортировка
От Kris Jurka
Тема Re: SQL injection bug for null-terminated strings?
Дата
Msg-id Pine.LNX.4.33.0309010629390.27036-100000@leary.csoft.net
обсуждение исходный текст
Ответ на SQL injection bug for null-terminated strings?  (joe user <palehaole@yahoo.com>)
Ответы Re: SQL injection bug for null-terminated strings?
Список pgsql-jdbc

On Sun, 31 Aug 2003, joe user wrote:

> >From looking at some logs, it looks like there might
> be an SQL injection bug with null-terminated strings.
> Is this a known problem?  If it is not, I will try to
> write a test program to trigger it.
>

This has been fixed in the development version of the driver.

See the following, check revision 1.29


http://developer.postgresql.org/cvsweb.cgi/pgsql-server/src/interfaces/jdbc/org/postgresql/jdbc1/AbstractJdbc1Statement.java

Kris Jurka



В списке pgsql-jdbc по дате отправления:

Предыдущее
От: Kris Jurka
Дата:
Сообщение: Re: Further getLastOID() woes
Следующее
От: "Juan Diego Hernandez Fonseca"
Дата:
Сообщение: unsuscribe