Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 5.5.29, 5.1.67, 5.2.14, 5.3.12
    • Fix Version/s: 5.5.30, 5.3.13, 5.2.15, 5.1.73
    • Component/s: None
    • Labels:
    • Environment:
      any

      Description

      run that for instance:
      select astext(0x0100000000030000000100000000000010);

        Gliffy Diagrams

          Attachments

            Issue Links

              Activity

              Show
              holyfoot Alexey Botchkov added a comment - patch proposal: http://lists.askmonty.org/pipermail/commits/2013-March/004371.html
              Hide
              serg Sergei Golubchik added a comment -

              reported upstream

              Show
              serg Sergei Golubchik added a comment - reported upstream
              Hide
              serg Sergei Golubchik added a comment -

              Please fix it in 5.1 too. Thanks!

              Show
              serg Sergei Golubchik added a comment - Please fix it in 5.1 too. Thanks!
              Hide
              amilburn Alyssa Milburn added a comment -

              The overflow vulnerabilities aren't all fixed by this patch. The mbr functions still look problematic, for example. Try the obvious example:

              select envelope(0x0100000000030000000100000000000010);

              Show
              amilburn Alyssa Milburn added a comment - The overflow vulnerabilities aren't all fixed by this patch. The mbr functions still look problematic, for example. Try the obvious example: select envelope(0x0100000000030000000100000000000010);
              Hide
              holyfoot Alexey Botchkov added a comment -

              fixed.
              also fixes the queries like select geometryn(0x0100000000070000000100000001030000000200000000000000ffff0000, 1) and select geometryn(0x0100000000070000000100000001030000000200000000000000ffffff0f, 1)

              the patch:
              http://lists.askmonty.org/pipermail/commits/2013-March/004447.html

              Show
              holyfoot Alexey Botchkov added a comment - fixed. also fixes the queries like select geometryn(0x0100000000070000000100000001030000000200000000000000ffff0000, 1) and select geometryn(0x0100000000070000000100000001030000000200000000000000ffffff0f, 1) the patch: http://lists.askmonty.org/pipermail/commits/2013-March/004447.html

                People

                • Assignee:
                  holyfoot Alexey Botchkov
                  Reporter:
                  holyfoot Alexey Botchkov
                • Votes:
                  0 Vote for this issue
                  Watchers:
                  3 Start watching this issue

                  Dates

                  • Due:
                    Created:
                    Updated:
                    Resolved:

                    Time Tracking

                    Estimated:
                    Original Estimate - 1 day
                    1d
                    Remaining:
                    Remaining Estimate - 0 minutes
                    0m
                    Logged:
                    Time Spent - 1 day
                    1d