Thread: pgsql: Force certain "pljava" custom GUCs to be PGC_SUSET.

pgsql: Force certain "pljava" custom GUCs to be PGC_SUSET.

From
Noah Misch
Date:
Force certain "pljava" custom GUCs to be PGC_SUSET.

Future PL/Java versions will close CVE-2016-0766 by making these GUCs
PGC_SUSET.  This PostgreSQL change independently mitigates that PL/Java
vulnerability, helping sites that update PostgreSQL more frequently than
PL/Java.  Back-patch to 9.1 (all supported versions).

Branch
------
REL9_2_STABLE

Details
-------
http://git.postgresql.org/pg/commitdiff/de9766d39d91f0069fc95bfaac0caed8546f8ccc

Modified Files
--------------
src/backend/utils/misc/guc.c | 11 +++++++++++
1 file changed, 11 insertions(+)