]> git.ipfire.org Git - thirdparty/postgresql.git/commit
Fix memory leak in libpq when using sslmode=verify-full
authorMichael Paquier <michael@paquier.xyz>
Tue, 21 Apr 2020 22:28:00 +0000 (07:28 +0900)
committerMichael Paquier <michael@paquier.xyz>
Tue, 21 Apr 2020 22:28:00 +0000 (07:28 +0900)
commitc9c15790d5a6ef667729ab4e40c1e73f368f95c4
tree7de5f71ea44bb524e05f192a43b580d1d92b2cca
parent5c1c27eef94a3d22f2fa4feab922c4af72a3a669
Fix memory leak in libpq when using sslmode=verify-full

Checking if Subject Alternative Names (SANs) from a certificate match
with the hostname connected to leaked memory after each lookup done.

This is broken since acd08d7 that added support for SANs in SSL
certificates, so backpatch down to 9.5.

Author: Roman Peshkurov
Reviewed-by: Hamid Akhtar, Michael Paquier, David Steele
Discussion: https://postgr.es/m/CALLDf-pZ-E3mjxd5=bnHsDu9zHEOnpgPgdnO84E2RuwMCjjyPw@mail.gmail.com
Backpatch-through: 9.5
src/interfaces/libpq/fe-secure-openssl.c