Обсуждение: pgsql: Fix possible buffer overrun and/or unportable behavior in

Поиск
Список
Период
Сортировка

pgsql: Fix possible buffer overrun and/or unportable behavior in

От
tgl@postgresql.org (Tom Lane)
Дата:
Log Message:
-----------
Fix possible buffer overrun and/or unportable behavior in pg_md5_encrypt()
if salt_len == 0.  This seems to be mostly academic, since nearly all calling
code paths guarantee nonempty salt; the only case that doesn't is
PQencryptPassword where the caller could mistakenly pass an empty username.
So, fix it but don't bother backpatching.  Per ljb.

Modified Files:
--------------
    pgsql/src/backend/libpq:
        md5.c (r1.36 -> r1.37)
        (http://anoncvs.postgresql.org/cvsweb.cgi/pgsql/src/backend/libpq/md5.c?r1=1.36&r2=1.37)