public inbox for [email protected]  
help / color / mirror / Atom feed
From: Антон Глушаков <[email protected]>
To: [email protected]
Subject: Broken behavior after minor update CVE-2024-10978
Date: Mon, 18 Nov 2024 15:17:26 +0300
Message-ID: <CAHnOmac-kzCxxm8OKa31FDJiyHRLgwbcs555_-HdeqhRJ6mEow@mail.gmail.com> (raw)

After upgrading to version 14.14, the behavior of roles related to the "set
role" option broke.
We actively use the feature "alter user <username> set role db_role"
in order to automatically change the role context upon login.
But now this behavior has changed, and the context does not change, which
unfortunately breaks all role-based access to data.

If this was an abnormal behavior, is there an alternative way to
automatically change the role context when connecting to the DB?


view thread (2+ messages)  latest in thread

reply

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Reply to all the recipients using the --to and --cc options:
  reply via email

  To: [email protected]
  Cc: [email protected], [email protected]
  Subject: Re: Broken behavior after minor update CVE-2024-10978
  In-Reply-To: <CAHnOmac-kzCxxm8OKa31FDJiyHRLgwbcs555_-HdeqhRJ6mEow@mail.gmail.com>

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

This inbox is served by agora; see mirroring instructions
for how to clone and mirror all data and code used for this inbox