Tighten pg_get_object_address argument checking - Mailing list pgsql-hackers

From Peter Eisentraut
Subject Tighten pg_get_object_address argument checking
Date
Msg-id caaef70b-a874-1088-92ef-5ac38269c33b@enterprisedb.com
Whole thread Raw
Responses Re: Tighten pg_get_object_address argument checking
List pgsql-hackers
For publication schemas (OBJECT_PUBLICATION_NAMESPACE) and user
mappings (OBJECT_USER_MAPPING), pg_get_object_address() checked the
array length of the second argument, but not of the first argument.
If the first argument was too long, it would just silently ignore
everything but the first argument.  Fix that by checking the length of
the first argument as well.

I wouldn't be surprised if there were more holes like this in this area. 
  I just happened to find these while working on something related.
Attachment

pgsql-hackers by date:

Previous
From: James Coleman
Date:
Subject: Auto explain after query timeout
Next
From: Jacob Champion
Date:
Subject: Re: CFM Manager