~ubuntu-branches/ubuntu/oneiric/postgresql-9.1/oneiric-security

« back to all changes in this revision

Viewing changes to src/backend/utils/misc/guc.c

  • Committer: Package Import Robot
  • Author(s): Martin Pitt
  • Date: 2013-02-05 18:13:52 UTC
  • mfrom: (1.1.10) (10.1.5 oneiric-proposed)
  • Revision ID: package-import@ubuntu.com-20130205181352-3kw4f94ilqklzm7c
Tags: 9.1.8-0ubuntu11.10
* New upstream security/bug fix release: (LP: #1116336)
  - Prevent execution of enum_recv from SQL
    The function was misdeclared, allowing a simple SQL command to crash the
    server.  In principle an attacker might be able to use it to examine the
    contents of server memory.  Our thanks to Sumit Soni (via Secunia SVCRP)
    for reporting this issue. (CVE-2013-0255)
  - See HISTORY/changelog.gz for the other bug fixes.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1449
1449
                        GUC_UNIT_S
1450
1450
                },
1451
1451
                &XLogArchiveTimeout,
1452
 
                0, 0, INT_MAX,
 
1452
                0, 0, INT_MAX / 2,
1453
1453
                NULL, NULL, NULL
1454
1454
        },
1455
1455
        {
1459
1459
                        GUC_NOT_IN_SAMPLE | GUC_UNIT_S
1460
1460
                },
1461
1461
                &PostAuthDelay,
1462
 
                0, 0, INT_MAX,
 
1462
                0, 0, INT_MAX / 1000000,
1463
1463
                NULL, NULL, NULL
1464
1464
        },
1465
1465
        {