Details
-
Bug
-
Status: Open
-
Major
-
Resolution: Unresolved
-
None
-
None
-
None
Description
A user can create a table in a shared schema where they don't have any privileges on the target table. They cannot copy the data but they can see the columns that make up the table.
connect as sql_user1;
create schema user1;
set schema user1;
create table t1 (...);
insert some rows
Connect as sql_user2
set schema to seabase
create table seabase.t1 like user1.t1; -> succeeds where it shouldn't