Re: [HACKERS] postgres vulnerability

2004-10-12 Thread Stephan Szabo
On Tue, 12 Oct 2004, Dave Cramer wrote: > Actually, I see this differently. > > This is a classic example of how postgreSQL is viewed by the rest of the > world. This argument has been brought up before. > It is only the core that differentiates the server from the interfaces. > The rest of the w

Re: [HACKERS] postgres vulnerability

2004-10-12 Thread Dave Cramer
Actually, I see this differently. This is a classic example of how postgreSQL is viewed by the rest of the world. This argument has been brought up before. It is only the core that differentiates the server from the interfaces. The rest of the world views this as one product. Dave On Sun, 2004-1

Re: [HACKERS] postgres vulnerability

2004-10-09 Thread Tom Lane
Neil Conway <[EMAIL PROTECTED]> writes: > Gaetano Mendola wrote: >> Here http://www.sans.org/top20/#u9 >> are listed postgres vulnerability it's sad see that almost all >> are related to third part components > "Almost all"? By my count, 12 of the 17 vulnerabilities refer to > legitimate problem

Re: [HACKERS] postgres vulnerability

2004-10-09 Thread Neil Conway
Gaetano Mendola wrote: Here http://www.sans.org/top20/#u9 are listed postgres vulnerability it's sad see that almost all are related to third part components "Almost all"? By my count, 12 of the 17 vulnerabilities refer to legitimate problems in PostgreSQL, its RPM distribution, or the ODBC drive

Re: [HACKERS] postgres vulnerability

2004-10-09 Thread Gaetano Mendola
Stephan Szabo wrote: On Sat, 9 Oct 2004, Stephan Szabo wrote: On Sat, 9 Oct 2004, Gaetano Mendola wrote: Here http://www.sans.org/top20/#u9 are listed postgres vulnerability it's sad see that almost all are related to third part components I'd go further than sad and say irresponsible for the on

Re: [HACKERS] postgres vulnerability

2004-10-09 Thread Stephan Szabo
On Sat, 9 Oct 2004, Stephan Szabo wrote: > > On Sat, 9 Oct 2004, Gaetano Mendola wrote: > > > Here http://www.sans.org/top20/#u9 > > are listed postgres vulnerability it's sad see that almost all > > are related to third part components > > I'd go further than sad and say irresponsible for the o

Re: [HACKERS] postgres vulnerability

2004-10-09 Thread Stephan Szabo
On Sat, 9 Oct 2004, Gaetano Mendola wrote: > Here http://www.sans.org/top20/#u9 > are listed postgres vulnerability it's sad see that almost all > are related to third part components I'd go further than sad and say irresponsible for the ones that are like that. ---(end