diff options
author | Kristian Nielsen <knielsen@odin> | 2010-04-28 07:48:03 +0200 |
---|---|---|
committer | Kristian Nielsen <knielsen@odin> | 2010-04-28 07:48:03 +0200 |
commit | 1f683a7270e63abfadce20c6f51370621ff065e1 (patch) | |
tree | 5a0058c047e53644b525b705ead0fb6cda653c7a /sql/sql_profile.cc | |
parent | e432151e9cf6a7a5ccf84fc137975ccf38fd0798 (diff) | |
download | mariadb-git-1f683a7270e63abfadce20c6f51370621ff065e1.tar.gz |
Fix buffer overflow in COM_FIELD_LIST.
sql/sql_base.cc:
Replace strmov() with strnmov() to remove the possibility for buffer overflow.
sql/sql_parse.cc:
Reject COM_FIELD_LIST with too-big table or wildcard argument.
(libmysqlclient doesn't allow sending too long arguments anyway, but we
need this to protect against buffer overflow exploits).
Diffstat (limited to 'sql/sql_profile.cc')
0 files changed, 0 insertions, 0 deletions