Re: [SECURITY] DoS attack on backend possible (was: Re:

Поиск
Список
Период
Сортировка
От Tom Lane
Тема Re: [SECURITY] DoS attack on backend possible (was: Re:
Дата
Msg-id 14467.1029085781@sss.pgh.pa.us
обсуждение исходный текст
Ответ на Re: [SECURITY] DoS attack on backend possible (was: Re:  (Justin Clift <justin@postgresql.org>)
Ответы Re: [SECURITY] DoS attack on backend possible (was: Re:  ("Christopher Kings-Lynne" <chriskl@familyhealth.com.au>)
Re: [SECURITY] DoS attack on backend possible (was: Re:  (Florian Weimer <Weimer@CERT.Uni-Stuttgart.DE>)
Re: [SECURITY] DoS attack on backend possible (was: Re:  (Greg Copeland <greg@CopelandConsulting.Net>)
Список pgsql-hackers
Justin Clift <justin@postgresql.org> writes:
> Am I understanding this right:
>  - A PostgreSQL 7.2.1 server can be crashed if it gets passed certain
> date values which would be accepted by standard "front end" parsing? 

AFAIK it's a buffer overrun issue, so anything that looks like a
reasonable date would *not* cause the problem.
        regards, tom lane


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Justin Clift
Дата:
Сообщение: Re: [SECURITY] DoS attack on backend possible (was: Re:
Следующее
От: Joe Conway
Дата:
Сообщение: Re: [GENERAL] workaround for lack of REPLACE() function