summaryrefslogtreecommitdiff
path: root/sql/sql_yacc.yy
diff options
context:
space:
mode:
authorunknown <knielsen@knielsen-hq.org>2010-05-09 21:30:06 +0200
committerunknown <knielsen@knielsen-hq.org>2010-05-09 21:30:06 +0200
commitfcfb218f71b7d371a10df020994fc0a618639327 (patch)
tree60e5c9d773785de08bedcd54721cbdf6c894f66a /sql/sql_yacc.yy
parent07bfc5a2d6ebaa1a0da406177e443948ef93f5c7 (diff)
downloadmariadb-git-fcfb218f71b7d371a10df020994fc0a618639327.tar.gz
Cherry-pick fix for Bug#53371, security hole with bypassing grants using special path in db/table names.
Bump MariaDB version for security fix release.
Diffstat (limited to 'sql/sql_yacc.yy')
-rw-r--r--sql/sql_yacc.yy2
1 files changed, 1 insertions, 1 deletions
diff --git a/sql/sql_yacc.yy b/sql/sql_yacc.yy
index e0f5cd9a562..a1f5547e103 100644
--- a/sql/sql_yacc.yy
+++ b/sql/sql_yacc.yy
@@ -6149,7 +6149,7 @@ alter_list_item:
{
MYSQL_YYABORT;
}
- if (check_table_name($3->table.str,$3->table.length) ||
+ if (check_table_name($3->table.str,$3->table.length, FALSE) ||
($3->db.str && check_db_name(&$3->db)))
{
my_error(ER_WRONG_TABLE_NAME, MYF(0), $3->table.str);