pgsql: Fix bogus tuple-slot management in logical replication UPDATE ha - Mailing list pgsql-committers

From Tom Lane
Subject pgsql: Fix bogus tuple-slot management in logical replication UPDATE ha
Date
Msg-id E1iYBqL-0002tT-IN@gemulon.postgresql.org
Whole thread Raw
List pgsql-committers
Fix bogus tuple-slot management in logical replication UPDATE handling.

slot_modify_cstrings seriously abused the TupleTableSlot API by relying
on a slot's underlying data to stay valid across ExecClearTuple.  Since
this abuse was also quite undocumented, it's little surprise that the
case got broken during the v12 slot rewrites.  As reported in bug #16129
from Ondřej Jirman, this could lead to crashes or data corruption when
a logical replication subscriber processes a row update.  Problems would
only arise if the subscriber's table contained columns of pass-by-ref
types that were not being copied from the publisher.

Fix by explicitly copying the datum/isnull arrays from the source slot
that the old row was in already.  This ends up being about the same
thing that happened pre-v12, but hopefully in a less opaque and
fragile way.

We might've caught the problem sooner if there were any test cases
dealing with updates involving non-replicated or dropped columns.
Now there are.

Back-patch to v10 where this code came in.  Even though the failure
does not manifest before v12, IMO this code is too fragile to leave
as-is.  In any case we certainly want the additional test coverage.

Patch by me; thanks to Tomas Vondra for initial investigation.

Discussion: https://postgr.es/m/16129-a0c0f48e71741e5f@postgresql.org

Branch
------
master

Details
-------
https://git.postgresql.org/pg/commitdiff/4d9ceb0018cc087e267f978c90917b3195542e22

Modified Files
--------------
src/backend/replication/logical/worker.c   | 32 ++++++++++++-----
src/test/subscription/t/001_rep_changes.pl | 55 +++++++++++++++++++++++++-----
2 files changed, 70 insertions(+), 17 deletions(-)


pgsql-committers by date:

Previous
From: Michael Paquier
Date:
Subject: pgsql: Add .gitignore to src/tutorial/
Next
From: Tom Lane
Date:
Subject: pgsql: Add test coverage for "unchanged toast column" replication code