Re: Fixing insecure security definer functions

Поиск
Список
Период
Сортировка
От Peter Eisentraut
Тема Re: Fixing insecure security definer functions
Дата
Msg-id 200704192353.44329.peter_e@gmx.net
обсуждение исходный текст
Ответ на Re: Fixing insecure security definer functions  (Stephen Frost <sfrost@snowman.net>)
Список pgsql-hackers
Stephen Frost wrote:
> While I agree that raising a warning makes sense I don't believe it
> should be forced.  There may be cases where, even in security definer
> functions, the current search_path should be used (though, of course,
> care must be taken in writing such functions).

I really wonder whether such a use case exists.  What would it be?

-- 
Peter Eisentraut
http://developer.postgresql.org/~petere/


В списке pgsql-hackers по дате отправления:

Предыдущее
От: "Gustavo Tonini"
Дата:
Сообщение: Fragmentation project
Следующее
От: Gregory Stark
Дата:
Сообщение: Re: Allowing COPY into views