diff options
| author | Tom Lane <tgl@sss.pgh.pa.us> | 2010-09-25 15:57:05 -0400 |
|---|---|---|
| committer | Tom Lane <tgl@sss.pgh.pa.us> | 2010-09-25 15:57:05 -0400 |
| commit | 3613d0893f526619471026b6b04bda70e31fe9e2 (patch) | |
| tree | d1b8d937c652f0a146802098bcc074a87fb76b74 /src/backend/optimizer/plan/analyzejoins.c | |
| parent | f27860dba39f3467bdcac6f91a8ca798b009f079 (diff) | |
Further fixes to the pg_get_expr() security fix in back branches.
It now emerges that the JDBC driver expects to be able to use pg_get_expr()
on an output of a sub-SELECT. So extend the check logic to be able to recurse
into a sub-SELECT to see if the argument is ultimately coming from an
appropriate column. Per report from Thomas Kellerer.
Diffstat (limited to 'src/backend/optimizer/plan/analyzejoins.c')
0 files changed, 0 insertions, 0 deletions
