Re: psqlODBC 09.05.0200 Released

From: Pavel Raiskup <praiskup(at)redhat(dot)com>
To: pgsql-odbc(at)postgresql(dot)org
Cc: Hiroshi Saito <hiroshi(at)winpg(dot)jp>, pgsql-announce(at)postgresql(dot)org
Subject: Re: psqlODBC 09.05.0200 Released
Date: 2016-04-14 13:47:06
Message-ID: 2358560.7dzo2vKd9I@nb.usersys.redhat.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-announce pgsql-odbc

Hi, fyi, I keep getting...

+ cat ./regression.diffs
*** ./expected/param-conversions.out Sat Apr 9 14:19:08 2016
--- results/param-conversions.out Thu Apr 14 15:44:56 2016
***************
*** 72,83 ****

Testing "SELECT 1.3 > ?" with SQL_C_CHAR -> SQL_FLOAT param "3', 'injected, BAD!', '1"...
SQLExecDirect failed
! 22P02=ERROR: invalid input syntax for type double precision: "3', 'injected, BAD!', '1";
Error while executing the query

Testing "SELECT 1.4 > ?" with SQL_C_CHAR -> SQL_FLOAT param "4 \'bad', '1"...
SQLExecDirect failed
! 22P02=ERROR: invalid input syntax for type double precision: "4 \'bad', '1";
Error while executing the query

Testing "SELECT 1-?" with SQL_C_CHAR -> SQL_INTEGER param "-1"...
--- 72,83 ----

Testing "SELECT 1.3 > ?" with SQL_C_CHAR -> SQL_FLOAT param "3', 'injected, BAD!', '1"...
SQLExecDirect failed
! 22P02=ERROR: invalid input syntax for type numeric: "3', 'injected, BAD!', '1";
Error while executing the query

Testing "SELECT 1.4 > ?" with SQL_C_CHAR -> SQL_FLOAT param "4 \'bad', '1"...
SQLExecDirect failed
! 22P02=ERROR: invalid input syntax for type numeric: "4 \'bad', '1";
Error while executing the query

Testing "SELECT 1-?" with SQL_C_CHAR -> SQL_INTEGER param "-1"...
+ read line

... on Fedora 23. I'll try to look more carefuly next week unless there
is somebody quicker than me.

Thanks, Pavel

In response to

Responses

Browse pgsql-announce by date

  From Date Subject
Next Message Pavel Raiskup 2016-04-14 13:48:16 Re: psqlODBC 09.05.0200 Released
Previous Message Virginie Jourdan 2016-04-14 09:29:14 Call for Papers, PostgreSQL and PostGIS, Session #8, September, 22th

Browse pgsql-odbc by date

  From Date Subject
Next Message Pavel Raiskup 2016-04-14 13:48:16 Re: psqlODBC 09.05.0200 Released
Previous Message Dieter Mueller (BOI GmbH) 2016-04-14 10:10:14 Re: [MASSMAIL]Re: use psqlodbc on Windows without Windows driver manager?