box: fix accidental exposure of _collation space to public
'public' role and thus guest and any newly created user has 'write' privilege to _collation space. It is not enough to modify _collation as one also needs 'create' privilege to add a collation and 'drop privilege to delete one. So it is safe. Yet looks like we don't have any purpuse of exposing _collation now. NO_DOC=bugfix
Showing
- changelogs/unreleased/ghs-5-hide-_collation-from-public.md 3 additions, 0 deletionschangelogs/unreleased/ghs-5-hide-_collation-from-public.md
- src/box/bootstrap.snap 0 additions, 0 deletionssrc/box/bootstrap.snap
- src/box/lua/upgrade.lua 15 additions, 0 deletionssrc/box/lua/upgrade.lua
- test/box-luatest/ghs_5_exclude__collation_from_public_access_test.lua 33 additions, 0 deletions...test/ghs_5_exclude__collation_from_public_access_test.lua
- test/box-py/bootstrap.result 1 addition, 2 deletionstest/box-py/bootstrap.result
- test/box/access.result 3 additions, 1 deletiontest/box/access.result
- test/box/access.test.lua 1 addition, 1 deletiontest/box/access.test.lua
- test/box/access_sysview.result 4 additions, 4 deletionstest/box/access_sysview.result
Loading
Please register or sign in to comment