<!-- 
RSS generated by JIRA (9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66) at Wed Feb 07 21:45:31 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>MongoDB Jira</title>
    <link>https://jira.mongodb.org</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.7.1</version>
        <build-number>970001</build-number>
        <build-date>13-04-2023</build-date>
    </build-info>


<item>
            <title>[CSHARP-3521] Security sensitive commands are not redacted in command started events</title>
                <link>https://jira.mongodb.org/browse/CSHARP-3521</link>
                <project id="10041" key="CSHARP">C# Driver</project>
                    <description>&lt;p&gt;The &lt;a href=&quot;https://github.com/mongodb/mongo-csharp-driver/commit/03f662798cca10a0692e801a891540396d9d97ce&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;commit&lt;/a&gt; for &lt;a href=&quot;https://jira.mongodb.org/browse/CSHARP-3032&quot; title=&quot;Support speculative SCRAM-SHA authentication attempts in isMaster&quot; class=&quot;issue-link&quot; data-issue-key=&quot;CSHARP-3032&quot;&gt;&lt;del&gt;CSHARP-3032&lt;/del&gt;&lt;/a&gt; introduced an undetected regression to security-sensitive command redaction when sending command started events.   As a result, the following commands are no longer redacted:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;isMaster (with speculativeAuthenticate)&lt;/li&gt;
	&lt;li&gt;saslStart&lt;/li&gt;
	&lt;li&gt;saslContinue&lt;/li&gt;
	&lt;li&gt;createUser&lt;/li&gt;
	&lt;li&gt;updateUser&lt;/li&gt;
&lt;/ul&gt;

</description>
                <environment></environment>
        <key id="1668568">CSHARP-3521</key>
            <summary>Security sensitive commands are not redacted in command started events</summary>
                <type id="1" iconUrl="https://jira.mongodb.org/secure/viewavatar?size=xsmall&amp;avatarId=14703&amp;avatarType=issuetype">Bug</type>
                                            <priority id="3" iconUrl="https://jira.mongodb.org/images/icons/priorities/major.svg">Major - P3</priority>
                        <status id="6" iconUrl="https://jira.mongodb.org/images/icons/statuses/closed.png" description="The issue is considered finished, the resolution is correct. Issues which are closed can be reopened.">Closed</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="13201">Fixed</resolution>
                                        <assignee username="robert@mongodb.com">Robert Stam</assignee>
                                    <reporter username="jeff.yemin@mongodb.com">Jeffrey Yemin</reporter>
                        <labels>
                    </labels>
                <created>Thu, 1 Apr 2021 16:26:44 +0000</created>
                <updated>Sat, 28 Oct 2023 11:47:50 +0000</updated>
                            <resolved>Tue, 6 Apr 2021 16:19:57 +0000</resolved>
                                    <version>2.11.0</version>
                    <version>2.12.0</version>
                                    <fixVersion>2.12.2</fixVersion>
                                    <component>Diagnostics</component>
                                        <votes>0</votes>
                                    <watches>1</watches>
                                                                                                                <comments>
                            <comment id="3703405" author="xgen-internal-githook" created="Tue, 6 Apr 2021 16:18:40 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;rstam&apos;, &apos;email&apos;: &apos;robert@robertstam.org&apos;, &apos;username&apos;: &apos;rstam&apos;}
&lt;p&gt;Message: &lt;a href=&quot;https://jira.mongodb.org/browse/CSHARP-3521&quot; title=&quot;Security sensitive commands are not redacted in command started events&quot; class=&quot;issue-link&quot; data-issue-key=&quot;CSHARP-3521&quot;&gt;&lt;del&gt;CSHARP-3521&lt;/del&gt;&lt;/a&gt;: Redact security sensitive commands and replies.&lt;br/&gt;
Branch: v2.12.x&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb/mongo-csharp-driver/commit/1f1a526e93ed7aa254759704b19f5ee66a3af365&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb/mongo-csharp-driver/commit/1f1a526e93ed7aa254759704b19f5ee66a3af365&lt;/a&gt;&lt;/p&gt;</comment>
                            <comment id="3703390" author="xgen-internal-githook" created="Tue, 6 Apr 2021 16:14:24 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;rstam&apos;, &apos;email&apos;: &apos;robert@robertstam.org&apos;, &apos;username&apos;: &apos;rstam&apos;}
&lt;p&gt;Message: &lt;a href=&quot;https://jira.mongodb.org/browse/CSHARP-3521&quot; title=&quot;Security sensitive commands are not redacted in command started events&quot; class=&quot;issue-link&quot; data-issue-key=&quot;CSHARP-3521&quot;&gt;&lt;del&gt;CSHARP-3521&lt;/del&gt;&lt;/a&gt;: Redact security sensitive commands and replies.&lt;br/&gt;
Branch: master&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb/mongo-csharp-driver/commit/97fe954c36d45c152e3b8db0f87ecf0912a2569a&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb/mongo-csharp-driver/commit/97fe954c36d45c152e3b8db0f87ecf0912a2569a&lt;/a&gt;&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10012">
                    <name>Related</name>
                                            <outwardlinks description="related to">
                                                        </outwardlinks>
                                                                <inwardlinks description="is related to">
                                                        </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                                                        <customfield id="customfield_10011" key="com.atlassian.jira.plugin.system.customfieldtypes:radiobuttons">
                        <customfieldname>Backwards Compatibility</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue key="10011"><![CDATA[Minor Change]]></customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                <customfield id="customfield_15850" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    <customfield id="customfield_12550" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>2|hsixcv:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10558" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            </customfields>
    </item>
</channel>
</rss>