Re: Stuff for 2.4.1 - Mailing list psycopg

From Harald Armin Massa
Subject Re: Stuff for 2.4.1
Date
Msg-id AANLkTinnQjYq=nWZH-r9bYRKaAhJ1SjXVQ06KdczmOQ6@mail.gmail.com
Whole thread Raw
In response to Stuff for 2.4.1  (Daniele Varrazzo <daniele.varrazzo@gmail.com>)
Responses Re: Stuff for 2.4.1  (Daniele Varrazzo <daniele.varrazzo@gmail.com>)
List psycopg
Daniele,

> own parser for the bytea hex format, so that clients are no more >dependant on libpq 9 to talk with a 9 server.
>By the way the best way to make  this patch
>was to have our own parser for the "escape" format as well:
> this has generally improved performance in receiving bytea

compliments for doing performance improvements!

Are you really sure that psycopg2 should go the road of having own
parsers in addition to libpq-s routines? As much as I am happy about
the robustness when having other libpqs, and about the performance
benefit, as much I fear to have some new areas for possible bugs -
especially security-relevant things like SQL-injections.

Harald

--
Harald Armin Massa     www.2ndQuadrant.com
PostgreSQL  Training, Services  and Support

2ndQuadrant Deutschland GmbH
GF: Harald Armin Massa
Amtsgericht Stuttgart, HRB 736399

psycopg by date:

Previous
From: Daniele Varrazzo
Date:
Subject: Stuff for 2.4.1
Next
From: Daniele Varrazzo
Date:
Subject: Re: Stuff for 2.4.1