agora inbox for pgsql-committers@postgresql.org  
help / color / mirror / Atom feed
From: Álvaro Herrera <alvherre@kurilemu.de>
To: pgsql-committers@lists.postgresql.org
Subject: pgsql: IS JSON/JSON(): Protect against expressions uncoercible to text
Date: Thu, 11 Jun 2026 14:19:48 +0000
Message-ID: <E1wXgG4-0020zz-0l@gemulon.postgresql.org> (raw)

IS JSON/JSON(): Protect against expressions uncoercible to text

transformJsonParseArg() was not careful enough on generation of
transformed expressions when starting from expressions that are not
coercible to text but are in the string type category: it failed to
verify that coerce_to_target_type() succeeds, and returned a NULL
pointer.  This leads to a later NULL dereference and crash at executor
time.

This escaped noticed because it cannot happen for built-in types, all of
which have casts to text.  Only user-created types are potentially
problematic.

Fix by raising an error when a cast to text doesn't exist.

This mistake came in with commit 6ee30209a6f1.

Author: Ayush Tiwari <ayushtiwari.slg01@gmail.com>
Reported-by: Chi Zhang <798604270@qq.com>
Reviewed-by: Srinath Reddy Sadipiralla <srinath2133@gmail.com>
Backpatch-through: 16
Discussion: https://postgr.es/m/19491-7aafc221ec63f288@postgresql.org

Branch
------
REL_16_STABLE

Details
-------
https://git.postgresql.org/pg/commitdiff/60abb3c7317586911606f35ac192a647a699ac12

Modified Files
--------------
src/backend/nodes/makefuncs.c         |  2 ++
src/backend/parser/parse_expr.c       | 10 ++++++++++
src/test/regress/expected/sqljson.out | 31 +++++++++++++++++++++++++++++++
src/test/regress/sql/sqljson.sql      | 20 ++++++++++++++++++++
4 files changed, 63 insertions(+)



view thread (4+ messages)

Message-ID: <E1wXgG4-0020zz-0l@gemulon.postgresql.org>
Permalink:  ../E1wXgG4-0020zz-0l@gemulon.postgresql.org/
Also on:    postgresql.org/message-id/E1wXgG4-0020zz-0l@gemulon.postgresql.org

reply

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Reply to all the recipients using the --to and --cc options:
  reply via email

  To: pgsql-committers@postgresql.org
  Cc: alvherre@kurilemu.de, pgsql-committers@lists.postgresql.org
  Subject: Re: pgsql: IS JSON/JSON(): Protect against expressions uncoercible to text
  In-Reply-To: <E1wXgG4-0020zz-0l@gemulon.postgresql.org>

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

This inbox is served by agora; see mirroring instructions
for how to clone and mirror all data and code used for this inbox