Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-25825

Authz test for user-defined roles does not properly manipulate privileges

    XMLWordPrintableJSON

Details

    • Fully Compatible
    • ALL

    Description

      In jstests/auth/commands_user_defined_roles.js, the function runOneTest() tests that each test case works when either the database or collection named in each resource is the empty string. But it attempts to do this by manipulating a local copy of the privileges array, and these modifications aren't used when testProperAuthorization() is called.

      Attachments

        Activity

          People

            kyle.suarez@mongodb.com Kyle Suarez
            kyle.suarez@mongodb.com Kyle Suarez
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: