Re: 7.4 changes - Mailing list pgsql-hackers

From Andrew Dunstan
Subject Re: 7.4 changes
Date
Msg-id 4173F32E.2030109@dunslane.net
Whole thread Raw
In response to Re: 7.4 changes  (Tom Lane <tgl@sss.pgh.pa.us>)
Responses Re: 7.4 changes  (Neil Conway <neilc@samurai.com>)
List pgsql-hackers

Tom Lane wrote:

>Andrew Dunstan <andrew@dunslane.net> writes:
>  
>
>>Do we want to backport tighter security for plperl? In particular, 
>>insisting on Safe.pm >= 2.09 and removing the :base_io set of ops?
>>    
>>
>
>I'd vote not: 7.4.5 => 7.4.6 is not an update that people would expect
>to break their plperl code ...
>
>
>  
>

*shrug* OK. Then plperl should probably not be regarded as being as 
"trusted" as we would like. Note that old versions of Safe.pm  have been 
the subject of security advisories such as this one 
http://www.securityfocus.com/bid/6111/info/ for some time.

cheers

andrew


pgsql-hackers by date:

Previous
From: Mark Wong
Date:
Subject: Re: spinlocks: generalizing "non-locking test"
Next
From: Bruce Momjian
Date:
Subject: Re: [PATCHES] Open Items