Wiki / Predefined Roles / Server files and programs
pg_execute_server_program
pg_execute_server_program
pg_execute_server_program allows executing programs on the database server as the user the database runs as using COPY and other functions which allow executing a server-side program.
Reading PostgreSQL 18.6.
Description
pg_execute_server_program allows executing programs on the database server as the user the database runs as using COPY and other functions which allow executing a server-side program.
- Name
- pg_execute_server_program
- Manual terminology
- Predefined roles
Privileges and scope
These roles are intended to allow administrators to have trusted, but non-superuser, roles which are able to access files and run programs on the database server as the user the database runs as. They bypass all database-level permission checks when accessing files directly and they could be used to gain superuser-level access. Therefore, great care should be taken when granting these roles to users.
Documentation and source
Source build
- Version
- 18.6
- Build
- PostgreSQL 18.6 Documentation
- Source fingerprint
b7ebd726e6017f55081b4034b96d6a3289ae7937a26adaf72e58b9a08e009c75
Compare versions
PostgreSQL 13 → 14: changed.
--- PostgreSQL 13
+++ PostgreSQL 14
@@ -6,7 +6,7 @@
},
{
"label": "Manual terminology",
- "value": "Default roles"
+ "value": "Predefined roles"
}
],
"signature": null,
Compares recorded interfaces and attributes. Source fingerprints and build metadata are excluded; an absent sample is not proof of the introduction or removal release.
Related entries
pg_read_server_filespg_read_server_filespg_write_server_filespg_write_server_files
Export JSON · Back to Predefined Roles · Recorded in PostgreSQL 11 through 20; the first sample is not necessarily its introduction.