summaryrefslogtreecommitdiff
path: root/net-mgmt/p0f
diff options
context:
space:
mode:
authorMikhail Teterin <mi@FreeBSD.org>2002-01-09 20:49:02 +0000
committerMikhail Teterin <mi@FreeBSD.org>2002-01-09 20:49:02 +0000
commit6c09982b17ab943af46cd13ff77c58fba3868e3f (patch)
treee724e8bde9609cd26232c722932a9745e077f23a /net-mgmt/p0f
parentRemove the dependency on security/mhash by calling MD5Data directly. (diff)
Close the security hole by making it escape all of the untrusted input
before passing it to the SQL server. The code in the added pqescape.c is going to be in the next PostgreSQL release, but it is not there yet and this port will use its own private copy for now. No REVISION bump since the port was forbidden ever since the last upgrade. Submitter reviewed my tweaks of his patch and approved them authorizing (as one of the SOs) the removal of the FORBIDDEN flag. Submitted by: nectar Reviewed by: nectar Approved by: nectar Obtained from: http://CERT.uni-stuttgart.de/doc/postgresql/escape/
Notes
Notes: svn path=/head/; revision=52829
Diffstat (limited to 'net-mgmt/p0f')
0 files changed, 0 insertions, 0 deletions