[PostGIS] #6055: Specify search_path carefully during extension install

PostGIS trac at osgeo.org
Fri Mar 6 13:13:19 PST 2026


#6055: Specify search_path carefully during extension install
----------------------+---------------------------
  Reporter:  pramsey  |      Owner:  pramsey
      Type:  defect   |     Status:  new
  Priority:  high     |  Milestone:  PostGIS 3.6.2
 Component:  postgis  |    Version:  3.2.x
Resolution:           |   Keywords:
----------------------+---------------------------
Comment (by Paul Ramsey <pramsey@…>):

 In [changeset:"d1b44c115e202fbec8fb6238f821f38b7efc6ef0/git" d1b44c1/git]:
 {{{#!CommitTicketReference repository="git"
 revision="d1b44c115e202fbec8fb6238f821f38b7efc6ef0"
 Remove rare extension priv escalation case, where account
 with extension create privs can escalate to superuser
 by piggy backing on an extension creation event.
 From Sven Klemm (Tiger Data) and Allistair Ishmael Hakim (allistair.sh)
 References #6055
 }}}
-- 
Ticket URL: <https://trac.osgeo.org/postgis/ticket/6055#comment:2>
PostGIS <http://trac.osgeo.org/postgis/>
The PostGIS Trac is used for bug, enhancement & task tracking, a user and developer wiki, and a view into the subversion code repository of PostGIS project.


More information about the postgis-tickets mailing list