Opened 8 years ago

Last modified 6 years ago

#2275 new defect

PGError & 500 error when given invalid Authorization: Basic string

Reported by: avarab@… Owned by: rails-dev@…
Priority: minor Milestone:
Component: website Version:
Keywords: Cc:

Description

Rails will throw a 500 error when you give it a ISO 8859-1 username. See the JOSM ticket for a network sniff.

Change History (3)

comment:1 follow-up: Changed 8 years ago by TomH

  • Priority changed from major to minor

I think the obvious question here is, what do you think it should do? I'm not even sure the HTTP specification provides any way to know what the encoding of the authentication header is does it?

comment:2 in reply to: ↑ 1 Changed 8 years ago by avarab@…

Replying to TomH:

I think the obvious question here is, what do you think it should do? I'm not even sure the HTTP specification provides any way to know what the encoding of the authentication header is does it?

Maybe give an error when the user provides an invalid UTF-8 sequence instead of sending it at the database which will result in an internal error?

I don't know. I just file bugs for things which are internal errors by reflex.

comment:3 Changed 6 years ago by TomH

  • Owner changed from tom@… to rails-dev@…
Note: See TracTickets for help on using tickets.