Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL - Mailing list pgsql-hackers

From Neil Conway
Subject Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL
Date
Msg-id 87wuqj4hk4.fsf@mailbox.samurai.com
Whole thread Raw
In response to Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL  (Bruce Momjian <pgman@candle.pha.pa.us>)
Responses Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL  (Bruce Momjian <pgman@candle.pha.pa.us>)
List pgsql-hackers
Bruce Momjian <pgman@candle.pha.pa.us> writes:
> Tom Lane wrote:
> > Neil Conway <neilc@samurai.com> writes:
> > > The handling of the TZ environmental variable is subject to a buffer
> > > overrun.
> > 
> > This problem is long gone in current sources, no?

I quickly tested current sources, and it seems the bug is fixed. I
only fixed it to begin with because I saw it while fixing the reported
problem.

> The patch looks like it does prevent some problems.

Yes: namely,  it fixes the bug in REL7_2_STABLE.

Cheers,

Neil

-- 
Neil Conway <neilc@samurai.com> || PGP Key ID: DB3C29FC



pgsql-hackers by date:

Previous
From: Tom Lane
Date:
Subject: Re: Large file support available
Next
From: Bruce Momjian
Date:
Subject: Re: @(#)Mordred Labs advisory 0x0002: Buffer overflow in PostgreSQL