Re: [SECURITY] DoS attack on backend possible (was: Re:

From: Gavin Sherry <swm(at)linuxworld(dot)com(dot)au>
To: Justin Clift <justin(at)postgresql(dot)org>
Cc: pgsql-hackers(at)postgresql(dot)org
Subject: Re: [SECURITY] DoS attack on backend possible (was: Re:
Date: 2002-08-12 02:41:15
Message-ID: Pine.LNX.4.21.0208121240060.4133-100000@linuxworld.com.au
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-committers pgsql-hackers

On Mon, 12 Aug 2002, Justin Clift wrote:

> Hi Chris,
>
> Christopher Kings-Lynne wrote:
> >
> <snip>
> > Still, I believe this should require a 7.2.2 release. Imagine a university
> > database server for a course for example - the students would just crash it
> > all the time.
>
> Hey yep, good point.
>
> Is this the only way that we know of non postgresql-superusers to be
> able to take out the server other than by extremely non-optimal,
> resource wasting queries?
>

Check the TODO:

You are now connected as new user s.
template1=> select cash_out(2);
server closed the connection unexpectedly
This probably means the server terminated abnormally
before or while processing the request.
The connection to the server was lost. Attempting reset: Failed.
!> \q
[swm(at)laptop a]$ bin/psql template1
psql: could not connect to server: Connection refused
Is the server running locally and accepting
connections on Unix domain socket "/tmp/.s.PGSQL.3987"?
[swm(at)laptop a]$

---

Gavin

In response to

Responses

Browse pgsql-committers by date

  From Date Subject
Next Message Tom Lane 2002-08-12 03:15:17 Re: TOAST & DROP COLUMN (Was: RE: pgsql-server/ oc/src/sgml/ref/cluster.sgml rc/ ... )
Previous Message Christopher Kings-Lynne 2002-08-12 02:37:42 Re: [SECURITY] DoS attack on backend possible (was: Re:

Browse pgsql-hackers by date

  From Date Subject
Next Message Curt Sampson 2002-08-12 02:46:06 Re: OOP real life example (was Re: Why is MySQL more chosen
Previous Message Christopher Kings-Lynne 2002-08-12 02:37:42 Re: [SECURITY] DoS attack on backend possible (was: Re: