Re: pg_dump -Ft failed on Windows XP - Mailing list pgsql-hackers

From Peter Eisentraut
Subject Re: pg_dump -Ft failed on Windows XP
Date
Msg-id 200604201245.27186.peter_e@gmx.net
Whole thread Raw
In response to Re: pg_dump -Ft failed on Windows XP  ("Magnus Hagander" <mha@sollentuna.net>)
List pgsql-hackers
Am Donnerstag, 20. April 2006 10:47 schrieb Magnus Hagander:
> Indeed, that's definitly a bug. Quick patch attached. It does appear to
> work, but there may be a better way?

This patch introduces a security hole because an attacker could create, say, a 
suitable symlink between the time the name is generated and the file is 
opened.

-- 
Peter Eisentraut
http://developer.postgresql.org/~petere/


pgsql-hackers by date:

Previous
From: Bruce Momjian
Date:
Subject: Re: float8 regression test failure in head
Next
From: Bruce Momjian
Date:
Subject: Unresolved Win32 bug reports