Return-Path: Delivered-To: apmail-db-derby-dev-archive@www.apache.org Received: (qmail 65321 invoked from network); 1 Apr 2008 13:37:55 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 1 Apr 2008 13:37:55 -0000 Received: (qmail 85560 invoked by uid 500); 1 Apr 2008 13:37:54 -0000 Delivered-To: apmail-db-derby-dev-archive@db.apache.org Received: (qmail 85532 invoked by uid 500); 1 Apr 2008 13:37:54 -0000 Mailing-List: contact derby-dev-help@db.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: Delivered-To: mailing list derby-dev@db.apache.org Received: (qmail 85523 invoked by uid 99); 1 Apr 2008 13:37:54 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 01 Apr 2008 06:37:54 -0700 X-ASF-Spam-Status: No, hits=-2000.0 required=10.0 tests=ALL_TRUSTED X-Spam-Check-By: apache.org Received: from [140.211.11.140] (HELO brutus.apache.org) (140.211.11.140) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 01 Apr 2008 13:37:09 +0000 Received: from brutus (localhost [127.0.0.1]) by brutus.apache.org (Postfix) with ESMTP id 84CAB234C0B3 for ; Tue, 1 Apr 2008 06:35:25 -0700 (PDT) Message-ID: <792271085.1207056925542.JavaMail.jira@brutus> Date: Tue, 1 Apr 2008 06:35:25 -0700 (PDT) From: "Rick Hillegas (JIRA)" To: derby-dev@db.apache.org Subject: [jira] Updated: (DERBY-2925) Prevent export from overwriting existing files In-Reply-To: <9019766.1184203084453.JavaMail.jira@brutus> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-Virus-Checked: Checked by ClamAV on apache.org [ https://issues.apache.org/jira/browse/DERBY-2925?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Rick Hillegas updated DERBY-2925: --------------------------------- Attachment: releaseNote.html Re-attaching release note as releaseNote.html since this is the file name which the release notes generator looks for. > Prevent export from overwriting existing files > ---------------------------------------------- > > Key: DERBY-2925 > URL: https://issues.apache.org/jira/browse/DERBY-2925 > Project: Derby > Issue Type: Sub-task > Components: Security, Tools > Affects Versions: 10.1.2.1, 10.2.2.0, 10.3.1.4, 10.4.0.0 > Reporter: Kathey Marsden > Assignee: Ramin Moazeni > Fix For: 10.3.1.4, 10.4.0.0 > > Attachments: DERBY-2925v0.diff, DERBY-2925v0.stat, DERBY-2925v1.diff, DERBY-2925v1.stat, DERBY-2925v2.diff, DERBY-2925v2.stat, DERBY-2925v3.diff, DERBY-2925v3.stat, DERBY-2925v4.diff, DERBY-2925v4.stat, DERBY-2925v5.diff, DERBY-2925v5.stat, DERBY-2925v6.diff, DERBY-2925v6.stat, releaseNote.html, releaseNotev0.html > > > Export should not overwrite existing files, but rather insist that the user remove them before writing to the file. This will help prevent accidental or intentional corruption of the database with export. This may introduce a compatibility issue with export but because export is usually an attended utility and not typically invoked as part of an application, I think the risk is worth the additional security this will provide. -- This message is automatically generated by JIRA. - You can reply to this email to add a comment to the issue online.