<!-- 
RSS generated by JIRA (9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66) at Thu Feb 08 09:01:41 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>MongoDB Jira</title>
    <link>https://jira.mongodb.org</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.7.1</version>
        <build-number>970001</build-number>
        <build-date>13-04-2023</build-date>
    </build-info>


<item>
            <title>[JAVA-4286] When we have two users with the same name, but created for different databases, and one of them is Admin db, conflicts of authentication happen, to be precise the user from other db can&apos;t login in system using own password.</title>
                <link>https://jira.mongodb.org/browse/JAVA-4286</link>
                <project id="10006" key="JAVA">Java Driver</project>
                    <description>&lt;p&gt;Steps to reproduce:&lt;br/&gt;
1. Create user &quot;bob&quot; with password: &quot;adminpwd&quot; and authentication db: &quot;admin&quot;&lt;br/&gt;
2. Create user &quot;bob&quot; with password: &quot;pwd&quot; and authentication db: &quot;anyOtherDb&quot;&lt;br/&gt;
3. Try to login with the second user using java driver (higher than 4.0.6)&#160; - result is failure (see attachment issue 1.png)&lt;br/&gt;
4. Try to login with the second user using java driver (4.0.6) - result is success (see attachment issue 2.png)&lt;/p&gt;

&lt;p&gt;&#160;&lt;/p&gt;

&lt;p&gt;Additional notes:&lt;br/&gt;
If there is only one user &quot;bob&quot; (second) in system - authentication is successful for all java drivers.&lt;/p&gt;

&lt;p&gt;&#160;&lt;/p&gt;

&lt;p&gt;&#160;&lt;/p&gt;</description>
                <environment></environment>
        <key id="1865146">JAVA-4286</key>
            <summary>When we have two users with the same name, but created for different databases, and one of them is Admin db, conflicts of authentication happen, to be precise the user from other db can&apos;t login in system using own password.</summary>
                <type id="1" iconUrl="https://jira.mongodb.org/secure/viewavatar?size=xsmall&amp;avatarId=14703&amp;avatarType=issuetype">Bug</type>
                                            <priority id="10300" iconUrl="https://jira.mongodb.org/images/icons/priorities/medium.svg">Unknown</priority>
                        <status id="6" iconUrl="https://jira.mongodb.org/images/icons/statuses/closed.png" description="The issue is considered finished, the resolution is correct. Issues which are closed can be reopened.">Closed</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="3">Duplicate</resolution>
                                        <assignee username="ross@mongodb.com">Ross Lawley</assignee>
                                    <reporter username="tsekot.sergey@gmail.com">Sergey Tsekot</reporter>
                        <labels>
                            <label>external-user</label>
                    </labels>
                <created>Wed, 1 Sep 2021 09:18:07 +0000</created>
                <updated>Wed, 4 May 2022 13:13:28 +0000</updated>
                            <resolved>Tue, 7 Sep 2021 14:41:07 +0000</resolved>
                                                                    <component>Security</component>
                                        <votes>0</votes>
                                    <watches>1</watches>
                                                                                                                <comments>
                            <comment id="4042423" author="ross@10gen.com" created="Tue, 7 Sep 2021 14:41:07 +0000"  >&lt;p&gt;Hi &lt;a href=&quot;https://jira.mongodb.org/secure/ViewProfile.jspa?name=tsekot.sergey%40gmail.com&quot; class=&quot;user-hover&quot; rel=&quot;tsekot.sergey@gmail.com&quot;&gt;tsekot.sergey@gmail.com&lt;/a&gt;,&lt;/p&gt;

&lt;p&gt;Thanks for reporting this ticket.  The issue has been fixed in &lt;a href=&quot;https://jira.mongodb.org/browse/JAVA-4290&quot; title=&quot;Speculative authentication always uses admin as the source&quot; class=&quot;issue-link&quot; data-issue-key=&quot;JAVA-4290&quot;&gt;&lt;del&gt;JAVA-4290&lt;/del&gt;&lt;/a&gt; and will be released (today) as part of 4.3.2&lt;/p&gt;

&lt;p&gt;All the best,&lt;/p&gt;

&lt;p&gt;Ross&lt;/p&gt;</comment>
                            <comment id="4042318" author="jeff.yemin" created="Tue, 7 Sep 2021 14:15:42 +0000"  >&lt;p&gt;Close as duplicate&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10010">
                    <name>Duplicate</name>
                                                                <inwardlinks description="is duplicated by">
                                        <issuelink>
            <issuekey id="1867988">JAVA-4290</issuekey>
        </issuelink>
                            </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                            <attachment id="332923" name="Stacktrace.txt" size="4185" author="tsekot.sergey@gmail.com" created="Wed, 1 Sep 2021 09:39:44 +0000"/>
                            <attachment id="334521" name="issue 1.png" size="108837" author="tsekot.sergey@gmail.com" created="Mon, 13 Sep 2021 07:43:18 +0000"/>
                            <attachment id="334522" name="issue 2.png" size="87446" author="tsekot.sergey@gmail.com" created="Mon, 13 Sep 2021 07:43:29 +0000"/>
                            <attachment id="334524" name="user creation.png" size="47257" author="tsekot.sergey@gmail.com" created="Mon, 13 Sep 2021 07:43:51 +0000"/>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                                                                                                                                                                                                    <customfield id="customfield_15850" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    <customfield id="customfield_12550" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>2|hzk2kn:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10558" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            </customfields>
    </item>
</channel>
</rss>