pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back

pgsql: Convert newlines to spaces in names written in v11+ pg_dump comm

2025-08-14 Thread Noah Misch
Convert newlines to spaces in names written in v11+ pg_dump comments. Maliciously-crafted object names could achieve SQL injection during restore. CVE-2012-0868 fixed this class of problem at the time, but later work reintroduced three cases. Commit bc8cd50fefd369b217f80078585c486505aafb62 (back