Re: [HACKERS] Static Code Analysis Exploits.

2014-03-08 Thread Patrick Curran
On 03/07/2014 07:19 PM, Tom Lane wrote: Patrick Curran writes: We use Postgres in our product and we have a client that requires a static code analysis scan to detect vulnerabilities. They are concerned because the tool (Veracode) found several flaws in Postgres and they believe there might be

Re: [HACKERS] Static Code Analysis Exploits.

2014-03-07 Thread Tom Lane
Patrick Curran writes: > We use Postgres in our product and we have a client that requires a > static code analysis scan to detect vulnerabilities. They are concerned > because the tool (Veracode) found several flaws in Postgres and they > believe there might be a security risk. I'm sure there

[HACKERS] Static Code Analysis Exploits.

2014-03-07 Thread Patrick Curran
Hi, We use Postgres in our product and we have a client that requires a static code analysis scan to detect vulnerabilities. They are concerned because the tool (Veracode) found several flaws in Postgres and they believe there might be a security risk. I'm sure there are lots of companies tha