Re: Possible problem with pgcrypto - Mailing list pgsql-hackers

From Tom Lane
Subject Re: Possible problem with pgcrypto
Date
Msg-id 6987.1423151933@sss.pgh.pa.us
Whole thread Raw
In response to Possible problem with pgcrypto  (Jan Wieck <jan@wi3ck.info>)
Responses Re: Possible problem with pgcrypto  (Jan Wieck <jan@wi3ck.info>)
List pgsql-hackers
Jan Wieck <jan@wi3ck.info> writes:
> I have encountered a small instability in the behavior of pgcrypto's 
> pgp_sym_decrypt() function. Attached is a script that can reproduce the 
> problem. It may have to be run repeatedly because the symptom occurs 
> rather seldom.

> What the script does is to encode a small string with pgp_sym_encrypt() 
> and then repeatedly try to decrypt it with different "wrong" passwords. 
> The expected error message for that is of course
>      "Wrong key or corrupt data".

> Every now and then, I get a different error message. Things I've seen are:

Have you tested this with this week's releases?  We fixed some
memory-mishandling bugs in pgcrypto ...
        regards, tom lane



pgsql-hackers by date:

Previous
From: Jan Wieck
Date:
Subject: Possible problem with pgcrypto
Next
From: Robert Haas
Date:
Subject: Re: GRANT USAGE on FOREIGN SERVER exposes passwords