080a160c7b9595d516c9c70e83689a09b60839d0 galt Mon Jun 3 12:16:53 2013 -0700 fix SQL Injection diff --git src/hg/bedItemOverlapCount/bedItemOverlapCount.c src/hg/bedItemOverlapCount/bedItemOverlapCount.c index 03b9173..24c3319 100644 --- src/hg/bedItemOverlapCount/bedItemOverlapCount.c +++ src/hg/bedItemOverlapCount/bedItemOverlapCount.c @@ -95,31 +95,31 @@ struct hash *ret; char **row; unsigned max = 0; if(host) { conn = sqlConnectRemote(host, user, password, database); } else { conn = sqlConnect(database); } ret = newHash(0); -sr = sqlGetResult(conn, "select * from chromInfo"); +sr = sqlGetResult(conn, "NOSQLINJ select * from chromInfo"); while ((row = sqlNextRow(sr)) != NULL) { el = chromInfoLoad(row); if (el->size > max) max = el->size; verbose(4, "Add hash %s value %u (%#lx)\n", el->chrom, el->size, (unsigned long)&el->size); hashAdd(ret, el->chrom, (void *)(& el->size)); } sqlFreeResult(&sr); sqlDisconnect(&conn); if (largest) *largest = max; return ret; } static unsigned chromosomeSize(char *chromosome) /* Return full extents of chromosome. Warn and fill in if none. */