Re: pg_amcheck option to install extension - Mailing list pgsql-hackers

From Michael Paquier
Subject Re: pg_amcheck option to install extension
Date
Msg-id YH5W/GLiJtx+scJp@paquier.xyz
Whole thread Raw
In response to Re: pg_amcheck option to install extension  (Mark Dilger <mark.dilger@enterprisedb.com>)
Responses Re: pg_amcheck option to install extension  (Mark Dilger <mark.dilger@enterprisedb.com>)
List pgsql-hackers
On Mon, Apr 19, 2021 at 08:39:06PM -0700, Mark Dilger wrote:
> This is a classic privilege escalation attack.  Bob has one
> privilege, and uses it to get another.

Bob is a superuser, so it has all the privileges of the world for this
instance.  In what is that different from BASE_BACKUP or just COPY
FROM PROGRAM?

I am not following your argument here.
--
Michael

Attachment

pgsql-hackers by date:

Previous
From: Mark Dilger
Date:
Subject: Re: pg_amcheck option to install extension
Next
From: vignesh C
Date:
Subject: Re: locking [user] catalog tables vs 2pc vs logical rep