Uploaded image for project: 'MariaDB Server'
  1. MariaDB Server
  2. MDEV-19879

server can send empty error message to client with pam_use_cleartext_plugin

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed (View Workflow)
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 10.2.25, 10.1.40, 10.3.16, 10.4.6
    • Fix Version/s: 10.4.7
    • Component/s: Plugin - pam
    • Labels:
      None

      Description

      If pam_use_cleartext_plugin is configured on the server, and if you have an error in your PAM service configuration, similar to the following:

      $ cat /etc/pam.d/mariadb
      auth required pam_unix.so audit
      auth required pam_unix.so audit
      

      Then the client receives an empty error message if you try to use PAM authentication:

      $ mysql -u alice --plugin-dir=/usr/lib64/mysql/plugin
      ERROR:
      

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              serg Sergei Golubchik
              Reporter:
              GeoffMontee Geoff Montee
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: