mirror of
https://github.com/MariaDB/server.git
synced 2025-01-16 20:12:31 +01:00
9955388a45
The fix is: if user has privileges to view fields and user has any (insert,select,delete,update) privileges on underlying view then 'show fields' and select from I_S.COLUMNS table are sucsessful. mysql-test/r/information_schema_db.result: Bug#20543 select on information_schema strange warnings, view, different schemas/users test result mysql-test/t/information_schema_db.test: Bug#20543 select on information_schema strange warnings, view, different schemas/users test case sql/sql_acl.cc: Bug#20543 select on information_schema strange warnings, view, different schemas/users checked that user has privileges on underlying view and if it's true set allowed_show to true for top view. sql/sql_show.cc: Bug#20543 select on information_schema strange warnings, view, different schemas/users removed unnecessary rights check.'tables->allowed_show' check is used instead sql/sql_view.cc: Bug#20543 select on information_schema strange warnings, view, different schemas/users skip the check of SHOW_VIEW_ACL privilege on underlying view. It is done later during execution of find_field_in_table_ref function. sql/table.h: Bug#20543 select on information_schema strange warnings, view, different schemas/users 'allowed_show' is set during rights check for view. If true then user has privileges for 'show create view', etc
156 lines
4.2 KiB
Text
156 lines
4.2 KiB
Text
-- source include/testdb_only.inc
|
|
|
|
--disable_warnings
|
|
drop table if exists t1,t2;
|
|
drop view if exists v1,v2;
|
|
drop function if exists f1;
|
|
drop function if exists f2;
|
|
--enable_warnings
|
|
|
|
use INFORMATION_SCHEMA;
|
|
--replace_result Tables_in_INFORMATION_SCHEMA Tables_in_information_schema
|
|
show tables;
|
|
--replace_result 'Tables_in_INFORMATION_SCHEMA (T%)' 'Tables_in_information_schema (T%)'
|
|
show tables from INFORMATION_SCHEMA like 'T%';
|
|
create database `inf%`;
|
|
create database mbase;
|
|
use `inf%`;
|
|
show tables;
|
|
|
|
#
|
|
# Bug#18113 SELECT * FROM information_schema.xxx crashes server
|
|
# Bug#17204 second CALL to procedure crashes Server
|
|
# Crash happened when one selected data from one of INFORMATION_SCHEMA
|
|
# tables and in order to build its contents server had to open view which
|
|
# used stored function and table or view on which one had not global or
|
|
# database-level privileges (e.g. had only table-level or had no
|
|
# privileges at all).
|
|
#
|
|
grant all privileges on `inf%`.* to 'mysqltest_1'@'localhost';
|
|
grant all privileges on `mbase`.* to 'mysqltest_1'@'localhost';
|
|
create table t1 (f1 int);
|
|
delimiter |;
|
|
create function func1(curr_int int) returns int
|
|
begin
|
|
declare ret_val int;
|
|
select max(f1) from t1 into ret_val;
|
|
return ret_val;
|
|
end|
|
|
delimiter ;|
|
|
create view v1 as select f1 from t1 where f1 = func1(f1);
|
|
create function func2() returns int return 1;
|
|
|
|
use mbase;
|
|
delimiter |;
|
|
create procedure p1 ()
|
|
begin
|
|
select table_name from information_schema.key_column_usage
|
|
order by table_name;
|
|
end|
|
|
delimiter ;|
|
|
|
|
create table t1
|
|
(f1 int(10) unsigned not null,
|
|
f2 varchar(100) not null,
|
|
primary key (f1), unique key (f2));
|
|
|
|
connect (user1,localhost,mysqltest_1,,);
|
|
connection user1;
|
|
--disable_result_log
|
|
select * from information_schema.tables;
|
|
call mbase.p1();
|
|
call mbase.p1();
|
|
call mbase.p1();
|
|
--enable_result_log
|
|
|
|
connection default;
|
|
use `inf%`;
|
|
drop user mysqltest_1@localhost;
|
|
drop table t1;
|
|
select table_name, table_type, table_comment from information_schema.tables
|
|
where table_schema='inf%' and func2();
|
|
select table_name, table_type, table_comment from information_schema.tables
|
|
where table_schema='inf%' and func2();
|
|
drop view v1;
|
|
drop function func1;
|
|
drop function func2;
|
|
|
|
drop database `inf%`;
|
|
drop procedure mbase.p1;
|
|
drop database mbase;
|
|
|
|
#
|
|
# Bug#18282 INFORMATION_SCHEMA.TABLES provides inconsistent info about invalid views
|
|
#
|
|
use test;
|
|
create table t1 (i int);
|
|
create function f1 () returns int return (select max(i) from t1);
|
|
create view v1 as select f1();
|
|
create table t2 (id int);
|
|
create function f2 () returns int return (select max(i) from t2);
|
|
create view v2 as select f2();
|
|
drop table t2;
|
|
select table_name, table_type, table_comment from information_schema.tables
|
|
where table_schema='test';
|
|
drop table t1;
|
|
select table_name, table_type, table_comment from information_schema.tables
|
|
where table_schema='test';
|
|
drop function f1;
|
|
drop function f2;
|
|
drop view v1, v2;
|
|
|
|
#
|
|
# Bug#20543: select on information_schema strange warnings, view, different
|
|
# schemas/users
|
|
#
|
|
#
|
|
create database testdb_1;
|
|
create user testdb_1@localhost;
|
|
grant all on testdb_1.* to testdb_1@localhost with grant option;
|
|
|
|
create user testdb_2@localhost;
|
|
grant all on test.* to testdb_2@localhost with grant option;
|
|
|
|
connect (testdb_1,localhost,testdb_1,,test);
|
|
use testdb_1;
|
|
create table t1 (f1 char(4));
|
|
create view v1 as select f1 from t1;
|
|
grant insert on v1 to testdb_2@localhost;
|
|
|
|
create table t3 (f1 char(4), f2 char(4));
|
|
create view v3 as select f1,f2 from t3;
|
|
grant insert(f1), insert(f2) on v3 to testdb_2@localhost;
|
|
|
|
connect (testdb_2,localhost,testdb_2,,test);
|
|
create view v2 as select f1 from testdb_1.v1;
|
|
create view v4 as select f1,f2 from testdb_1.v3;
|
|
|
|
connection testdb_1;
|
|
revoke insert(f1) on v3 from testdb_2@localhost;
|
|
connection testdb_2;
|
|
|
|
--error 1345
|
|
show create view v4;
|
|
--error 1345
|
|
show fields from v4;
|
|
|
|
show fields from v2;
|
|
show fields from testdb_1.v1;
|
|
show create view v2;
|
|
--error 1142
|
|
show create view testdb_1.v1;
|
|
|
|
select table_name from information_schema.columns a
|
|
where a.table_name = 'v2';
|
|
select view_definition from information_schema.views a
|
|
where a.table_name = 'v2';
|
|
select view_definition from information_schema.views a
|
|
where a.table_name = 'testdb_1.v1';
|
|
|
|
--error 1356
|
|
select * from v2;
|
|
|
|
connection default;
|
|
drop view testdb_1.v1,v2, testdb_1.v3, v4;
|
|
drop database testdb_1;
|
|
drop user testdb_1@localhost;
|