missing GRANT on pg_subscription columns
От
Euler Taveira
Тема
missing GRANT on pg_subscription columns
Дата
Msg-id
b8f7c17c-0041-46b6-acfe-2d1f5a985ab4@www.fastmail.com
Список
Дерево обсуждения
missing GRANT on pg_subscription columns "Euler Taveira" <euler@eulerto.com>
Re: missing GRANT on pg_subscription columns Tom Lane <tgl@sss.pgh.pa.us>
Re: missing GRANT on pg_subscription columns Amit Kapila <amit.kapila16@gmail.com>
Re: missing GRANT on pg_subscription columns vignesh C <vignesh21@gmail.com>
Re: missing GRANT on pg_subscription columns Amit Kapila <amit.kapila16@gmail.com>
Hi, I was checking the GRANT on pg_subscription and noticed that the command is not correct. There is a comment that says "All columns of pg_subscription except subconninfo are readable". However, there are columns that aren't included: oid and subsynccommit. It seems an oversight in the commits 6f236e1eb8c and 887227a1cc8. There are monitoring tools and data collectors that aren't using a superuser to read catalog information (I usually recommend using pg_monitor). Hence, you cannot join pg_subscription with relations such as pg_subscription_rel or pg_stat_subscription because column oid has no column-level privilege. I'm attaching a patch to fix it (indeed, 2 patches because of additional columns for v14). We should add instructions in the minor version release notes too. This issue was reported by Israel Barth. -- Euler Taveira EDB https://www.enterprisedb.com/
В списке pgsql-hackers по дате отправления
От: Tom Lane
Дата: