mirror of
https://github.com/postgres/postgres.git
synced 2025-08-08 06:02:22 +03:00
to prevent possible escalation of privilege. Provide new SECURITY DEFINER functions with old behavior, but initially REVOKE ALL from public for these functions. Per list discussion and design proposed by Tom Lane.
106 lines
3.2 KiB
MySQL
106 lines
3.2 KiB
MySQL
--
|
|
-- Uncomment the following commented lines to use original DEPRECATED functions
|
|
--
|
|
--CREATE OR REPLACE FUNCTION dblink (text,text)
|
|
--RETURNS setof int
|
|
--AS 'MODULE_PATHNAME','dblink'
|
|
--LANGUAGE 'C' WITH (isstrict);
|
|
--CREATE OR REPLACE FUNCTION dblink_tok (int,int)
|
|
--RETURNS text
|
|
--AS 'MODULE_PATHNAME','dblink_tok'
|
|
--LANGUAGE 'C' WITH (isstrict);
|
|
--CREATE OR REPLACE FUNCTION dblink_last_oid (int)
|
|
--RETURNS oid
|
|
--AS 'MODULE_PATHNAME','dblink_last_oid'
|
|
--LANGUAGE 'C' WITH (isstrict);
|
|
|
|
-- dblink_connect now restricts non-superusers to password
|
|
-- authenticated connections
|
|
CREATE OR REPLACE FUNCTION dblink_connect (text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_connect'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
-- dblink_connect_u allows non-superusers to use
|
|
-- non-password authenticated connections, but initially
|
|
-- privileges are revoked from public
|
|
CREATE OR REPLACE FUNCTION dblink_connect_u (text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_connect'
|
|
LANGUAGE C STRICT SECURITY DEFINER;
|
|
|
|
REVOKE ALL ON FUNCTION dblink_connect_u (text) FROM public;
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_disconnect ()
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_disconnect'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_open (text,text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_open'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_fetch (text,int)
|
|
RETURNS setof record
|
|
AS 'MODULE_PATHNAME','dblink_fetch'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_close (text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_close'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
-- Note: if this is not a first time install of dblink, uncomment the
|
|
-- following DROP which prepares the database for the new, non-deprecated
|
|
-- version.
|
|
--DROP FUNCTION dblink (text,text);
|
|
|
|
-- Comment out the following 3 lines if the DEPRECATED functions are used.
|
|
CREATE OR REPLACE FUNCTION dblink (text,text)
|
|
RETURNS setof record
|
|
AS 'MODULE_PATHNAME','dblink_record'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink (text)
|
|
RETURNS setof record
|
|
AS 'MODULE_PATHNAME','dblink_record'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_exec (text,text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_exec'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_exec (text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_exec'
|
|
LANGUAGE 'c' WITH (isstrict);
|
|
|
|
CREATE TYPE dblink_pkey_results AS (position int4, colname text);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_get_pkey (text)
|
|
RETURNS setof dblink_pkey_results
|
|
AS 'MODULE_PATHNAME','dblink_get_pkey'
|
|
LANGUAGE 'c' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_build_sql_insert (text, int2vector, int4, _text, _text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_build_sql_insert'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_build_sql_delete (text, int2vector, int4, _text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_build_sql_delete'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_build_sql_update (text, int2vector, int4, _text, _text)
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_build_sql_update'
|
|
LANGUAGE 'C' WITH (isstrict);
|
|
|
|
CREATE OR REPLACE FUNCTION dblink_current_query ()
|
|
RETURNS text
|
|
AS 'MODULE_PATHNAME','dblink_current_query'
|
|
LANGUAGE 'C';
|