Re: @(#)Mordred Labs advisory 0x0003: Buffer overflow in

From: Bruce Momjian <pgman(at)candle(dot)pha(dot)pa(dot)us>
To: "Marc G(dot) Fournier" <scrappy(at)hub(dot)org>
Cc: Justin Clift <justin(at)postgresql(dot)org>, Robert Treat <xzilla(at)users(dot)sourceforge(dot)net>, Neil Conway <neilc(at)samurai(dot)com>, Gavin Sherry <swm(at)linuxworld(dot)com(dot)au>, Christopher Kings-Lynne <chriskl(at)familyhealth(dot)com(dot)au>, pgsql-hackers(at)postgresql(dot)org
Subject: Re: @(#)Mordred Labs advisory 0x0003: Buffer overflow in
Date: 2002-08-21 18:06:29
Message-ID: 200208211806.g7LI6Tc01176@candle.pha.pa.us
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers


OK, beta starts on time, September 1. I agree we should keep the
agreed-upon date, and that the propsed features aren't ready, but I had
to let the discussion happen so people felt their opinions where being
heard.

---------------------------------------------------------------------------

Marc G. Fournier wrote:
> On Wed, 21 Aug 2002, Bruce Momjian wrote:
>
> > Justin Clift wrote:
> > > Reckon it's worth asking him, to find out if he'd be interested in this?
> >
> >
> > I wouldn't do it yet until we know if we are going to delay.
>
> Any security audit of the code should *not* be done while the code is in
> flux, and if we delay, the code would be in flux since the delay would be
> to throw in a load of other code that would invalidate the audit results
> ...
>
> > Oh, so it is Jan's group. Great news; wish someone would have told me
> > sooner. I removed the Win32 off the open items list because, with no
> > info and no one commenting on the item, it seemed dead for 7.3.
>
> And it should be ... we can put the Win32 patches up on the ftp site for
> ppl to play with if they want, but to include it at this late a date would
> be irresponsible ...
>
> > Well, PITR is a much more desired feature even than Win32; the big
> > question is how long PITR will actually take, seeing as we haven't see
> > any patches yet.
> >
> > However, we haven't seen any Win32 patches yet either, so they are in
> > the same boat as far as I am concerned.
> >
> > We have an open items list that is pretty much ready for 7.3. The only
> > open items of significance left is whether schema/DROP COLUMN stuff is
> > ready in all the interfaces/apps.
>
> We set a timeline for beta ... this time, let's stick to it ... its not
> like we didn't advertise when we were going into beta ... hell, even when
> the patches are presented for PITR support, who knows whether they will be
> accepted, or what kinda bugs they are going to throw into the mix, or ...
>
>

--
Bruce Momjian | http://candle.pha.pa.us
pgman(at)candle(dot)pha(dot)pa(dot)us | (610) 359-1001
+ If your life is a hard drive, | 13 Roberts Road
+ Christ can be your backup. | Newtown Square, Pennsylvania 19073

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Bruce Momjian 2002-08-21 18:08:09 Re: @(#)Mordred Labs advisory 0x0003: Buffer overflow in
Previous Message Marc G. Fournier 2002-08-21 18:05:07 Re: @(#)Mordred Labs advisory 0x0003: Buffer overflow in