Re: [Fwd: [SECURITY] [DSA 516-1] New odbc-postgresql packages fix denial of service] - Mailing list pgsql-odbc

From Peter Eisentraut
Subject Re: [Fwd: [SECURITY] [DSA 516-1] New odbc-postgresql packages fix denial of service]
Date
Msg-id 200406102008.56472.peter_e@gmx.net
Whole thread Raw
In response to [Fwd: [SECURITY] [DSA 516-1] New odbc-postgresql packages fix denial of service]  (Shachar Shemesh <psql@shemesh.biz>)
List pgsql-odbc
Shachar Shemesh wrote:
> Can anyone comment on where this fix is coming from? Was it found and
> fixed by the Debian maintainer? Is the fix integrated into the ODBC
> available from gborg? What other platforms are affected by it?

The fix was made by the Debian maintainer after discussion on the
pgsql-bugs list.  It is not integrated in the upstream sources yet,
partially because it is not a proper fix, more a stop gap.  I think the
ODBC driver is full of more buffer overflows and needs a serious audit.


pgsql-odbc by date:

Previous
From: Janet Borschowa
Date:
Subject: Re: Help with casting timestamp column
Next
From: TANIDA Yutaka
Date:
Subject: Re: [Fwd: [SECURITY] [DSA 516-1] New odbc-postgresql packages fix denial of service]