dbTalk Databases Forums  

[BUGS] BUG #1198: Linux PostgreSQL Server Input Validation Vulnerability

mailing.database.pgsql-bugs mailing.database.pgsql-bugs


Discuss [BUGS] BUG #1198: Linux PostgreSQL Server Input Validation Vulnerability in the mailing.database.pgsql-bugs forum.



Reply
 
Thread Tools Display Modes
  #1  
Old   
PostgreSQL Bugs List
 
Posts: n/a

Default [BUGS] BUG #1198: Linux PostgreSQL Server Input Validation Vulnerability - 07-20-2004 , 10:08 AM







The following bug has been logged online:

Bug reference: 1198
Logged by: iDEFENSE Vendor Disclosure

Email address: vendor-disclosure (AT) idefense (DOT) com

PostgreSQL version: 7.4

Operating system: Linux

Description: Linux PostgreSQL Server Input Validation Vulnerability

Details:

iDEFENSE has identified an input validation vulnerability in PostgreSQL .
This vulnerability was submitted to iDEFENSE through our Vulnerability
Contributor Program (http://www.idefense.com/poi/teams/vcp.jsp). iDEFENSE
Labs has validated this vulnerability and has drafted an advisory. I have
not included the advisory in this web form submission as it is unclear who
the target audience is. Please contact me at vendor-disclosure (AT) idefense (DOT) com
for a copy so that we can continue the process.

Regards,
Pedram Amini
Assistant Director, iDEFENSE Labs
pamini (AT) idefense (DOT) com

7/20/2004


---------------------------(end of broadcast)---------------------------
TIP 3: if posting/reading through Usenet, please send an appropriate
subscribe-nomail command to majordomo (AT) postgresql (DOT) org so that your
message can get through to the mailing list cleanly

Reply With Quote
  #2  
Old   
Peter Eisentraut
 
Posts: n/a

Default Re: [BUGS] BUG #1198: Linux PostgreSQL Server Input Validation Vulnerability - 07-20-2004 , 11:24 AM






PostgreSQL Bugs List wrote:
Quote:
iDEFENSE has identified an input validation vulnerability in
PostgreSQL . This vulnerability was submitted to iDEFENSE through our
Vulnerability Contributor Program
(http://www.idefense.com/poi/teams/vcp.jsp). iDEFENSE Labs has
validated this vulnerability and has drafted an advisory. I have not
included the advisory in this web form submission as it is unclear
who the target audience is. Please contact me at
vendor-disclosure (AT) idefense (DOT) com for a copy so that we can continue the
process.
If you have a bug to report, this (pgsql-bugs (AT) postgresql (DOT) org) is the
right place.

--
Peter Eisentraut
http://developer.postgresql.org/~petere/


---------------------------(end of broadcast)---------------------------
TIP 2: you can get off all lists at once with the unregister command
(send "unregister YourEmailAddressHere" to majordomo (AT) postgresql (DOT) org)


Reply With Quote
Reply




Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Powered by vBulletin Version 3.5.3
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.