Convert newlines to spaces in names written in pg_dump comments. pg_dump was incautious about sanitizing object names that are emitted within SQL comments in its output script. A name containing a newline would at least render the script syntactically incorrect. Maliciously crafted object names could present a SQL injection risk when the script is reloaded.
Reported by Heikki Linnakangas, patch by Robert Haas Security: CVE-2012-0868 Branch ------ REL8_3_STABLE Details ------- http://git.postgresql.org/pg/commitdiff/a7f6cb85486b1f3eacd86155af2fdc20a1dc2bec Modified Files -------------- src/bin/pg_dump/pg_backup_archiver.c | 60 +++++++++++++++++++++++++++++++-- 1 files changed, 56 insertions(+), 4 deletions(-) -- Sent via pgsql-committers mailing list ([email protected]) To make changes to your subscription: http://www.postgresql.org/mailpref/pgsql-committers
