Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-25825

Authz test for user-defined roles does not properly manipulate privileges

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major - P3
    • Resolution: Fixed
    • Affects Version/s: 3.3.11
    • Fix Version/s: 3.2.12, 3.3.14
    • Component/s: JavaScript
    • Labels:
    • Backwards Compatibility:
      Fully Compatible
    • Operating System:
      ALL
    • Backport Completed:

      Description

      In jstests/auth/commands_user_defined_roles.js, the function runOneTest() tests that each test case works when either the database or collection named in each resource is the empty string. But it attempts to do this by manipulating a local copy of the privileges array, and these modifications aren't used when testProperAuthorization() is called.

        Attachments

          Issue Links

            Activity

              People

              • Votes:
                0 Vote for this issue
                Watchers:
                5 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: