pgsql: IS JSON/JSON(): Protect against expressions uncoercible to text - Mailing list pgsql-committers

From Álvaro Herrera
Subject pgsql: IS JSON/JSON(): Protect against expressions uncoercible to text
Date
Msg-id E1wXgG4-0020zu-0e@gemulon.postgresql.org
Whole thread
List pgsql-committers
IS JSON/JSON(): Protect against expressions uncoercible to text

transformJsonParseArg() was not careful enough on generation of
transformed expressions when starting from expressions that are not
coercible to text but are in the string type category: it failed to
verify that coerce_to_target_type() succeeds, and returned a NULL
pointer.  This leads to a later NULL dereference and crash at executor
time.

This escaped noticed because it cannot happen for built-in types, all of
which have casts to text.  Only user-created types are potentially
problematic.

Fix by raising an error when a cast to text doesn't exist.

This mistake came in with commit 6ee30209a6f1.

Author: Ayush Tiwari <ayushtiwari.slg01@gmail.com>
Reported-by: Chi Zhang <798604270@qq.com>
Reviewed-by: Srinath Reddy Sadipiralla <srinath2133@gmail.com>
Backpatch-through: 16
Discussion: https://postgr.es/m/19491-7aafc221ec63f288@postgresql.org

Branch
------
REL_18_STABLE

Details
-------
https://git.postgresql.org/pg/commitdiff/35d9a6263407563f9948a38fced5419deab297a2

Modified Files
--------------
src/backend/nodes/makefuncs.c         |  2 ++
src/backend/parser/parse_expr.c       | 10 +++++++++
src/test/regress/expected/sqljson.out | 38 +++++++++++++++++++++++++++++++++++
src/test/regress/sql/sqljson.sql      | 22 ++++++++++++++++++++
4 files changed, 72 insertions(+)


pgsql-committers by date:

Previous
From: Dean Rasheed
Date:
Subject: pgsql: Fix parsing of parenthesised OLD/NEW in RETURNING list.
Next
From: Robert Haas
Date:
Subject: pgsql: Fix type confusion in AddRelsyncInvalidationMessage