]> git.ipfire.org Git - thirdparty/postgresql.git/commit
Fix memory leak in libpq when using sslmode=verify-full
authorMichael Paquier <michael@paquier.xyz>
Tue, 21 Apr 2020 22:27:53 +0000 (07:27 +0900)
committerMichael Paquier <michael@paquier.xyz>
Tue, 21 Apr 2020 22:27:53 +0000 (07:27 +0900)
commit1bb0293d844538ee39b14a7965a9ea7e10dcae93
treeba4fee4b6ee2968aa49b6dd239612e426f9bef32
parente6c17c85ac9e5c6ff2c4feeca913216baeb5afb6
Fix memory leak in libpq when using sslmode=verify-full

Checking if Subject Alternative Names (SANs) from a certificate match
with the hostname connected to leaked memory after each lookup done.

This is broken since acd08d7 that added support for SANs in SSL
certificates, so backpatch down to 9.5.

Author: Roman Peshkurov
Reviewed-by: Hamid Akhtar, Michael Paquier, David Steele
Discussion: https://postgr.es/m/CALLDf-pZ-E3mjxd5=bnHsDu9zHEOnpgPgdnO84E2RuwMCjjyPw@mail.gmail.com
Backpatch-through: 9.5
src/interfaces/libpq/fe-secure-openssl.c