Screenshot instructions:
Windows
Mac
Red Hat Linux
Ubuntu
Click URL instructions:
Right-click on ad, choose "Copy Link", then paste here →
(This may not be possible with some types of ads)
You can subscribe to this list here.
2000 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
(381) |
Sep
(175) |
Oct
(261) |
Nov
(202) |
Dec
(221) |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2001 |
Jan
(307) |
Feb
(144) |
Mar
(140) |
Apr
(571) |
May
(652) |
Jun
(376) |
Jul
(547) |
Aug
(788) |
Sep
(475) |
Oct
(445) |
Nov
(599) |
Dec
(387) |
2002 |
Jan
(282) |
Feb
(348) |
Mar
(641) |
Apr
(313) |
May
(227) |
Jun
(317) |
Jul
(432) |
Aug
(775) |
Sep
(514) |
Oct
(835) |
Nov
(787) |
Dec
(680) |
2003 |
Jan
(960) |
Feb
(1202) |
Mar
(1114) |
Apr
(744) |
May
(538) |
Jun
(670) |
Jul
(880) |
Aug
(1123) |
Sep
(943) |
Oct
(780) |
Nov
(862) |
Dec
(747) |
2004 |
Jan
(929) |
Feb
(818) |
Mar
(609) |
Apr
(906) |
May
(568) |
Jun
(543) |
Jul
(555) |
Aug
(656) |
Sep
(794) |
Oct
(581) |
Nov
(626) |
Dec
(555) |
2005 |
Jan
(867) |
Feb
(661) |
Mar
(811) |
Apr
(674) |
May
(541) |
Jun
(603) |
Jul
(439) |
Aug
(381) |
Sep
(729) |
Oct
(693) |
Nov
(493) |
Dec
(442) |
2006 |
Jan
(685) |
Feb
(415) |
Mar
(567) |
Apr
(763) |
May
(452) |
Jun
(393) |
Jul
(409) |
Aug
(282) |
Sep
(259) |
Oct
(398) |
Nov
(397) |
Dec
(464) |
2007 |
Jan
(564) |
Feb
(304) |
Mar
(442) |
Apr
(358) |
May
(353) |
Jun
(160) |
Jul
(439) |
Aug
(250) |
Sep
(276) |
Oct
(428) |
Nov
(572) |
Dec
(221) |
2008 |
Jan
(354) |
Feb
(277) |
Mar
(378) |
Apr
(448) |
May
(308) |
Jun
(269) |
Jul
(281) |
Aug
(142) |
Sep
(141) |
Oct
(323) |
Nov
(341) |
Dec
(352) |
2009 |
Jan
(362) |
Feb
(335) |
Mar
(347) |
Apr
(190) |
May
(222) |
Jun
(346) |
Jul
(281) |
Aug
(295) |
Sep
(279) |
Oct
(610) |
Nov
(580) |
Dec
(550) |
2010 |
Jan
(387) |
Feb
(357) |
Mar
(365) |
Apr
(168) |
May
(132) |
Jun
(61) |
Jul
(165) |
Aug
(305) |
Sep
(351) |
Oct
(405) |
Nov
(380) |
Dec
(273) |
2011 |
Jan
(193) |
Feb
(136) |
Mar
(445) |
Apr
(350) |
May
(214) |
Jun
(109) |
Jul
(113) |
Aug
(145) |
Sep
(43) |
Oct
(132) |
Nov
(219) |
Dec
(257) |
2012 |
Jan
(237) |
Feb
(170) |
Mar
(182) |
Apr
(229) |
May
(89) |
Jun
(120) |
Jul
(203) |
Aug
(112) |
Sep
(101) |
Oct
(123) |
Nov
(186) |
Dec
(83) |
2013 |
Jan
(122) |
Feb
(69) |
Mar
(154) |
Apr
(126) |
May
(70) |
Jun
(82) |
Jul
(96) |
Aug
(192) |
Sep
(151) |
Oct
(134) |
Nov
(192) |
Dec
(170) |
2014 |
Jan
(157) |
Feb
(235) |
Mar
(338) |
Apr
(327) |
May
(283) |
Jun
(204) |
Jul
(341) |
Aug
(456) |
Sep
(211) |
Oct
(294) |
Nov
(318) |
Dec
(318) |
2015 |
Jan
(151) |
Feb
(204) |
Mar
(363) |
Apr
(144) |
May
(134) |
Jun
(143) |
Jul
(192) |
Aug
(122) |
Sep
(190) |
Oct
(187) |
Nov
(430) |
Dec
(240) |
2016 |
Jan
(177) |
Feb
(188) |
Mar
(754) |
Apr
(270) |
May
(296) |
Jun
(268) |
Jul
(107) |
Aug
(131) |
Sep
(120) |
Oct
(91) |
Nov
(135) |
Dec
(69) |
2017 |
Jan
(225) |
Feb
(102) |
Mar
(177) |
Apr
(154) |
May
(131) |
Jun
(53) |
Jul
(130) |
Aug
(121) |
Sep
(65) |
Oct
(92) |
Nov
(87) |
Dec
(90) |
2018 |
Jan
(164) |
Feb
(115) |
Mar
(97) |
Apr
(82) |
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
S | M | T | W | T | F | S |
---|---|---|---|---|---|---|
|
1
(15) |
2
(21) |
3
(16) |
4
(12) |
5
(33) |
6
(14) |
7
(12) |
8
(25) |
9
(63) |
10
(24) |
11
(9) |
12
(22) |
13
(5) |
14
(13) |
15
(21) |
16
(15) |
17
(21) |
18
(15) |
19
(18) |
20
(6) |
21
(3) |
22
(19) |
23
(17) |
24
(19) |
25
(8) |
26
(29) |
27
(4) |
28
(29) |
29
(11) |
30
(40) |
31
(50) |
|
|
|
From: Jim Starkey <jas@ne...> - 2004-03-13 23:35:52
|
Samofatov, Nickolay wrote: >My current codebase produces 5 warnings resulting from lack of wisdom of >GCC developers (no way to locally disable warning that comparison is >always true/false due to limited range of data type) and a handful >warnings in cch.cpp due to lack of wisdom of C++ committee (offsetof is >undefined for all non-POD datatypes, even very simple ones). > Isn't that annoying? And really stupid. It's what comes from committees designing language. Those are also the only warning in Netfrastructure, and every other database in the world with a variable page size. > >Anyway, when I did 64-bit GCC build with aggressive warnings options >compiler barked at security issue in server.cpp:aux_connect. >Basically packet with opcode op_aux_connect receives pointer over the >wire and writes data at its location. This is easy-to-exploit DoS issue >at the very least. > >The aux_connect routine is a part of secondary attachments >infrastructure and current codebase doesn't provide means to send >op_aux_connect packet. >It was used only for Apollo server if I understand IB6 codebase >correctly. > I think you missed something. It exists to establish a secondary connection for event handling, and is probably used in all ports. I agree that the original implementation is dangerous. And, of course, it is mine. It could be easily (and transparently) repaired by sending context specific handles rather pointers. Since the far end just sends back whatever was sent, this is completely safe. If you'd like, you'll find a Vulcan class HandlerManager which would do the thing. It's in Vulcan, but I have used it yet, so please let me know about the gaffs. |
From: Samofatov, Nickolay <Nickolay@BroadViewSoftware.com> - 2004-03-13 22:08:05
|
Hi, All! As you may have already noticed I do some code cleaning/review now to establish clean baseline for my performance analysis/activity tracing changes. My current codebase produces 5 warnings resulting from lack of wisdom of GCC developers (no way to locally disable warning that comparison is always true/false due to limited range of data type) and a handful warnings in cch.cpp due to lack of wisdom of C++ committee (offsetof is undefined for all non-POD datatypes, even very simple ones). Anyway, when I did 64-bit GCC build with aggressive warnings options compiler barked at security issue in server.cpp:aux_connect. Basically packet with opcode op_aux_connect receives pointer over the wire and writes data at its location. This is easy-to-exploit DoS issue at the very least. The aux_connect routine is a part of secondary attachments infrastructure and current codebase doesn't provide means to send op_aux_connect packet. It was used only for Apollo server if I understand IB6 codebase correctly. I think we should #ifdef out processing of op_aux_connect packet and backport this fix to B1_5_Release since this security issue is remotely expoitable. Suggestions? Nickolay Samofatov |
From: Doru Constantin <doru@ol...> - 2004-03-13 12:51:20
|
(sorry for intrude) I build FB 2.0.0.6690 UNSTABLE from cvs on win32 and I've notice that the server do not read the "aliases.conf" file. I try the following ODBC string connection: 1). DRIVER={Firebird/InterBase(r) driver};UID=SYSDBA;PWD=masterkey;DBNAME=DORU/3050:d:/firebird/data/test.fdb;CLIENT=fbclient.dll;CHARSET=none; 2). DRIVER={Firebird/InterBase(r) driver};UID=SYSDBA;PWD=masterkey;DBNAME=DORU/3050:test;CLIENT=fbclient.dll;CHARSET=none; in my "aliases.conf" l have: test = d:\firebird\data\test.fdb in the first case all is ok, but in the second case I get: Connectivity error: I/O error for file "test" Error while trying to open file The system cannot find the file specified. Doru. |
From: Alfredo Milani-Comparetti <firebird-devel@mi...> - 2004-03-13 11:23:55
|
I've issued a KILL -s 15 <pid>. FBSERVER died and was immediately restarted by FBGUARD. In a few seconds I got the following messages in firebird.log: ----------------------------------------------------------------- comparetti01 (Client) Fri Mar 12 21:40:50 2004 /opt/firebird/bin/fbguard: guardian starting bin/fbserver comparetti01 (Server) Sat Mar 13 11:37:41 2004 Database: /home/for.gdb internal gds software consistency check (invalid SEND request (167)) comparetti01 (Server) Sat Mar 13 11:37:41 2004 Database: /home/for.gdb internal gds software consistency check (invalid SEND request (167)) comparetti01 (Server) Sat Mar 13 11:43:15 2004 SCH_validate -- wrong thread comparetti01 (Client) Sat Mar 13 12:14:36 2004 /opt/firebird/bin/fbguard: bin/fbserver terminated abnormally (-1) comparetti01 (Client) Sat Mar 13 12:14:36 2004 /opt/firebird/bin/fbguard: guardian starting bin/fbserver comparetti01 (Server) Sat Mar 13 12:14:43 2004 Database: /home/for.gdb internal gds software consistency check (invalid SEND request (167)) ----------------------------------------------------------------- A few more info: ----------------------------------------------------------------- [root@... root]# date Sat Mar 13 12:20:30 CET 2004 [root@... root]# ps -aux | grep fbserver firebird 24578 1.2 1.7 110140 8952 ? S 12:14 0:04 fbserver root 25021 0.0 0.1 3552 560 pts/1 S 12:20 0:00 grep fbserver [root@... root]# netstat -an | grep " 127.0.0.1:3050 " tcp 0 0 127.0.0.1:43545 127.0.0.1:3050 TIME_WAIT tcp 0 0 127.0.0.1:43716 127.0.0.1:3050 TIME_WAIT tcp 0 0 127.0.0.1:43940 127.0.0.1:3050 TIME_WAIT tcp 0 0 127.0.0.1:43174 127.0.0.1:3050 TIME_WAIT tcp 0 0 127.0.0.1:43496 127.0.0.1:3050 TIME_WAIT tcp 1 0 127.0.0.1:34807 127.0.0.1:3050 CLOSE_WAIT tcp 0 0 127.0.0.1:39549 127.0.0.1:3050 ESTABLISHED tcp 0 0 127.0.0.1:39538 127.0.0.1:3050 ESTABLISHED tcp 0 0 127.0.0.1:39541 127.0.0.1:3050 ESTABLISHED tcp 0 0 127.0.0.1:39582 127.0.0.1:3050 ESTABLISHED tcp 0 0 127.0.0.1:39573 127.0.0.1:3050 ESTABLISHED tcp 0 0 127.0.0.1:39562 127.0.0.1:3050 ESTABLISHED ----------------------------------------------------------------- Hope this helps. Alfredo Milani Comparetti alfredo [at] milanicomparetti.com SpeedFan home page --> http://www.almico.com/speedfan.php Delphi home page --> http://www.almico.com/delphi Elf home page --> http://www.radsite.com/elf |
From: Alfredo Milani-Comparetti <firebird-devel@mi...> - 2004-03-13 11:14:16
|
The server is dying right now. Some reports: -------------------------------------------------------------------- [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.5 0.0 418244 28 ? S Mar12 21:37 fbserver [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.6 0.0 418244 28 ? S Mar12 22:40 fbserver [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.6 0.0 418244 28 ? S Mar12 22:42 fbserver [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.6 0.0 418244 28 ? S Mar12 23:02 fbserver [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.7 0.0 418244 28 ? S Mar12 23:57 fbserver [root@... mrtg]# date Sat Mar 13 12:02:12 CET 2004 [root@... mrtg]# ps -aux | grep fbserver firebird 11473 2.8 0.0 418244 28 ? S Mar12 24:22 fbserver ---------------------------------------------------------------------- For readability I've substituted "/opt/firebird/bin/fbserver" with "fbserver". It looks odd, to me, that "418244 28". I've tried to connect via telnet and this is the result: ----------------------------------------------- [root@... root]# telnet 127.0.0.1 3050 Trying 127.0.0.1... Connected to 127.0.0.1. Escape character is '^]'. quit ----------------------------------------------- But I do not get disconnected. On another server, if I issue the same telnet command, wait for reply, enter "quit" and press ENTER, I get a "Connection closed by foreign host.". It took a lot to get the same message under this situation. A new message appeared in /opt/firebird/firebird.log: ----------------------------------------------- comparetti01 (Server) Sat Mar 13 11:37:41 2004 Database: /home/for.gdb internal gds software consistency check (invalid SEND request (167)) comparetti01 (Server) Sat Mar 13 11:37:41 2004 Database: /home/for.gdb internal gds software consistency check (invalid SEND request (167)) comparetti01 (Server) Sat Mar 13 11:43:15 2004 SCH_validate -- wrong thread ----------------------------------------------- I'm going to kill the server as it doesn't want to die by itself :-) I have to kill it with the KILL command as the standard /etc/init.d/firebird does not work (I guess it's unable to connect and I have to recover my server). Alfredo Milani Comparetti alfredo [at] milanicomparetti.com SpeedFan home page --> http://www.almico.com/speedfan.php Delphi home page --> http://www.almico.com/delphi Elf home page --> http://www.radsite.com/elf |