Escape single quotes in SQLite entries for message backups

Fixes #7491
Closes #7497
pull/1/head
junitas 7 years ago committed by Moxie Marlinspike
parent fd7a3190f8
commit 7f7aab044c

@ -143,7 +143,7 @@ public class FullBackupExporter extends FullBackupBase {
for (int i=0;i<cursor.getColumnCount();i++) {
if (cursor.getType(i) == Cursor.FIELD_TYPE_STRING) {
statement.append('\'');
statement.append(cursor.getString(i).replace("'", "\\'"));
statement.append(cursor.getString(i).replace("'", "''"));
statement.append('\'');
} else if (cursor.getType(i) == Cursor.FIELD_TYPE_FLOAT) {
statement.append(cursor.getFloat(i));

Loading…
Cancel
Save