Re: [sqlite] Magellan 2.0 Vulnerabilities

2020-01-08 Thread Simon Slavin
On 9 Jan 2020, at 12:18am, Ware, Ryan R wrote: > I see absolutely nothing on sqlite.org or in the mail list archive > specifically about these issues If someone reports a vulnerability here, it gets acknowledged here. But I don't think Tencent posts here. On 8 Jan 2020, at 10:27pm, Ware, Rya

Re: [sqlite] Magellan 2.0 Vulnerabilities

2020-01-08 Thread Ware, Ryan R
On Wednesday, January 8, 2020 at 3:49:37 PM Richard Hipp said: > On 1/8/20, Ware, Ryan R wrote: > > > > We've been following the Magellan 2.0 > > (https://blade.tencent.com/magellan2/index_en.html) issues found by Tencent. > > > > Why, oh why, are you doing this? Hey Richard. Thanks for resp

Re: [sqlite] Magellan 2.0 Vulnerabilities

2020-01-08 Thread Richard Hipp
On 1/8/20, Ware, Ryan R wrote: > > We've been following the Magellan 2.0 > (https://blade.tencent.com/magellan2/index_en.html) issues found by Tencent. > Why, oh why, are you doing this? If you are a typical user of SQLite, then there are no vulnerabilities in SQLite that you need to concern you

[sqlite] Magellan 2.0 Vulnerabilities

2020-01-08 Thread Ware, Ryan R
Hello folks, First, I want to thank everyone for the great work you do on sqlite. I’m sure it’s no surprise, but sqlite is used heavily at Intel. We've been following the Magellan 2.0 (https://blade.tencent.com/magellan2/index_en.html) issues found by Tencent. One of the things I've found is