From: | tgl(at)postgresql(dot)org (Tom Lane) |
---|---|
To: | pgsql-committers(at)postgresql(dot)org |
Subject: | pgsql: Fix bug in SET SESSION AUTHORIZATION that allows unprivileged |
Date: | 2006-02-12 22:33:29 |
Message-ID: | 20060212223329.BB8569DCA73@postgresql.org |
Views: | Raw Message | Whole Thread | Download mbox | Resend email |
Thread: | |
Lists: | pgsql-committers |
Log Message:
-----------
Fix bug in SET SESSION AUTHORIZATION that allows unprivileged users to crash
the server, if it has been compiled with Asserts enabled (CVE-2006-0553).
Thanks to Akio Ishida for reporting this problem.
Tags:
----
REL7_4_STABLE
Modified Files:
--------------
pgsql/src/backend/commands:
variable.c (r1.88.2.2 -> r1.88.2.3)
(http://developer.postgresql.org/cvsweb.cgi/pgsql/src/backend/commands/variable.c.diff?r1=1.88.2.2&r2=1.88.2.3)
pgsql/src/backend/utils/mb:
encnames.c (r1.17 -> r1.17.4.1)
(http://developer.postgresql.org/cvsweb.cgi/pgsql/src/backend/utils/mb/encnames.c.diff?r1=1.17&r2=1.17.4.1)
pgsql/src/backend/utils/misc:
guc.c (r1.164.2.3 -> r1.164.2.4)
(http://developer.postgresql.org/cvsweb.cgi/pgsql/src/backend/utils/misc/guc.c.diff?r1=1.164.2.3&r2=1.164.2.4)
pgsql/src/include/utils:
guc_tables.h (r1.6 -> r1.6.4.1)
(http://developer.postgresql.org/cvsweb.cgi/pgsql/src/include/utils/guc_tables.h.diff?r1=1.6&r2=1.6.4.1)
From | Date | Subject | |
---|---|---|---|
Next Message | Tom Lane | 2006-02-12 22:33:47 | pgsql: Fix bug in SET SESSION AUTHORIZATION that allows unprivileged |
Previous Message | Tom Lane | 2006-02-12 22:33:14 | pgsql: Fix bug in SET SESSION AUTHORIZATION that allows unprivileged |