On Tuesday 14 April 2009 21:48:12 Tom Lane wrote:
> Peter Eisentraut <peter_e(at)gmx(dot)net> writes:
> > I think we can handle that and the cases Tom presents by erroring out
> > when the U& syntax is used with stdstr off.
>
> I think you're missing the point --- this is not about whether the
> syntax is unambiguous (it is already) but about whether a frontend that
> doesn't understand it 100% will be secure against subversion. I have no
> confidence in the latter assumption.
I think I am getting the point quite well. Do you have an example how this
can be subverted?