Re: BUG #18614: [ECPG] out of bound in DecodeDateTime

From: Michael Paquier <michael(at)paquier(dot)xyz>
To: Павел Некрасов <p(dot)nekrasov(at)fobos-nt(dot)ru>
Cc: Bruce Momjian <bruce(at)momjian(dot)us>, pgsql-bugs(at)lists(dot)postgresql(dot)org
Subject: Re: BUG #18614: [ECPG] out of bound in DecodeDateTime
Date: 2024-10-24 22:25:26
Message-ID: ZxrJVlqAc07ES-qM@paquier.xyz
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-bugs

On Thu, Oct 24, 2024 at 12:09:10PM +0300, Павел Некрасов wrote:
> I would like to clarify two points:
>
> 1. Are there any known examples of large open-source projects that
> actively use the ecpg?

Yes, some large organizations use it.

> 2. Do you think it would be appropriate to assign a CVE for this bug?

Nope, this issue does not qualify as worth a CVE when it comes to
PostgreSQL.
--
Michael

In response to

Responses

Browse pgsql-bugs by date

  From Date Subject
Next Message Peter Smith 2024-10-25 00:41:49 Re: BUG #18644: ALTER PUBLICATION ... SET (publish_via_partition_root) wrong/undocumented behavior.
Previous Message Tom Lane 2024-10-24 20:30:44 Re: BUG #18672: failing to link postgresql