Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL

From: Neil Conway <neilc(at)samurai(dot)com>
To: Bruce Momjian <pgman(at)candle(dot)pha(dot)pa(dot)us>
Cc: Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us>, Neil Conway <neilc(at)samurai(dot)com>, Sir Mordred The Traitor <mordred(at)s-mail(dot)com>, pgsql-hackers(at)postgresql(dot)org
Subject: Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL
Date: 2002-08-22 04:56:59
Message-ID: 87wuqj4hk4.fsf@mailbox.samurai.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

Bruce Momjian <pgman(at)candle(dot)pha(dot)pa(dot)us> writes:
> Tom Lane wrote:
> > Neil Conway <neilc(at)samurai(dot)com> writes:
> > > The handling of the TZ environmental variable is subject to a buffer
> > > overrun.
> >
> > This problem is long gone in current sources, no?

I quickly tested current sources, and it seems the bug is fixed. I
only fixed it to begin with because I saw it while fixing the reported
problem.

> The patch looks like it does prevent some problems.

Yes: namely, it fixes the bug in REL7_2_STABLE.

Cheers,

Neil

--
Neil Conway <neilc(at)samurai(dot)com> || PGP Key ID: DB3C29FC

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Bruce Momjian 2002-08-22 04:59:27 Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL
Previous Message Bruce Momjian 2002-08-22 04:55:12 Re: @(#)Mordred Labs advisory 0x0004: Multiple buffer overflows