Re: [Plperlng-devel] plperl security - Mailing list pgsql-hackers

From Andrew Dunstan
Subject Re: [Plperlng-devel] plperl security
Date
Msg-id 40E99A22.5060503@dunslane.net
Whole thread Raw
In response to Re: [Plperlng-devel] plperl security  ("Joshua D. Drake" <jd@commandprompt.com>)
List pgsql-hackers

Joshua D. Drake wrote:

>
>> Currently we have this in plperl.c:
>>  "require Safe;"
>>
>> I am thinking of submitting a patch to replace this with "use Safe 
>> 2.09;" to enforce use of a version without the known vulnerability.
>>
>> Any objections?
>
>
> I have none, except will 2.09 work with 5.00503?


I will see about getting a test done, unless someone on one of those 
systems with an older perl can try upgrading the Safe module from CPAN 
for us.


cheers

andrew


pgsql-hackers by date:

Previous
From: "Joshua D. Drake"
Date:
Subject: Re: [Plperlng-devel] plperl security
Next
From: Tom Lane
Date:
Subject: Re: plperl security