Re: Zlib vulnerability heads-up. - Mailing list pgsql-hackers

From Jan Wieck
Subject Re: Zlib vulnerability heads-up.
Date
Msg-id 200203121634.g2CGYDr29777@saturn.janwieck.net
Whole thread Raw
In response to Zlib vulnerability heads-up.  (Lamar Owen <lamar.owen@wgcr.org>)
Responses Re: Zlib vulnerability heads-up.  (Lamar Owen <lamar.owen@wgcr.org>)
List pgsql-hackers
Lamar Owen wrote:
[Charset iso-8859-15 unsupported, filtering to ASCII...]
> As PostgreSQL uses the zlib library (for TOAST?), this is a headsup that a
> bug has been found in the zlib library that could  cause data corruption or a
> security breach.
   PostgreSQL  does  not  use  the  zlib  library for toast. The   algorithm used in toast is based on Adisak
Pochanayon's SLZ.
 


Jan

>
> See http://www.gzip.org/zlib/advisory-2002-03-11.txt for more details.
>
> Updating zlib is strongly recommended by many sources, and a patch is
> available.
>
> I have only posted this to HACKERS; if a cross-post to GENERAL or ADMIN is
> useful, that can be arranged.
> --
> Lamar Owen
> WGCR Internet Radio
> 1 Peter 4:11
>
> ---------------------------(end of broadcast)---------------------------
> TIP 2: you can get off all lists at once with the unregister command
>     (send "unregister YourEmailAddressHere" to majordomo@postgresql.org)
>


--

#======================================================================#
# It's easier to get forgiveness for being wrong than for being right. #
# Let's break this rule - forgive me.                                  #
#================================================== JanWieck@Yahoo.com #



_________________________________________________________
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com



pgsql-hackers by date:

Previous
From: "Luis Alberto Amigo Navarro"
Date:
Subject: bad performance on SMP
Next
From: "Zeugswetter Andreas SB SD"
Date:
Subject: Re: Rationalizing EXPLAIN VERBOSE output