pgsql-server/src backend/libpq/auth.c backend/ ...

From: tgl(at)postgresql(dot)org (Tom Lane)
To: pgsql-committers(at)postgresql(dot)org
Subject: pgsql-server/src backend/libpq/auth.c backend/ ...
Date: 2002-09-04 23:31:35
Message-ID: 20020904233135.30533476135@postgresql.org
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-committers

CVSROOT: /cvsroot
Module name: pgsql-server
Changes by: tgl(at)postgresql(dot)org 02/09/04 19:31:35

Modified files:
src/backend/libpq: auth.c be-secure.c pqcomm.c pqformat.c
src/include/libpq: libpq.h pqformat.h

Log message:
Guard against send-lots-and-lots-of-data DoS attack from unauthenticated
users, by limiting the length of string we will accept for a password.
Patch by Serguei Mokhov, some editorializing by Tom Lane.

Browse pgsql-committers by date

  From Date Subject
Next Message Tom Lane 2002-09-05 00:43:07 pgsql-server/ ontrib/cube/cubeparse.y ontrib/c ...
Previous Message Bruce Momjian - CVS 2002-09-04 23:14:23 pgsql-server/. HISTORY