XMLRPC with Firefox 17.0 not possible
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Mahara |
Fix Released
|
Critical
|
Unassigned | ||
1.5 |
Fix Released
|
Undecided
|
Unassigned | ||
1.6 |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Since the release of Firefox 17.0 MNET SSO from Moodle to Mahara is broken. Works fine with Firefox <17, Chrome and IE9.
Error:
Sorry, we could not log you in.
Sorry, we could not log you into Mahara - HTL-Perg at this time. Please try again shortly. If the problem persists, contact your administrator.
Apache-Error-Log:
[Fri Nov 23 16:11:11 2012] [error] [client 10.114.57.20] [WAR] 37 (api/xmlrpc/
[Fri Nov 23 16:11:11 2012] [error] [client 10.114.57.20] Call stack (most recent first):, referer: https://<moodle>
[Fri Nov 23 16:11:11 2012] [error] [client 10.114.57.20] * Client->send("https://<moodle>") at /var/www/
[Fri Nov 23 16:11:11 2012] [error] [client 10.114.57.20] * AuthXmlrpc-
[Fri Nov 23 16:11:11 2012] [error] [client 10.114.57.20] , referer: https://<moodle>
Translation for: "Kein Zugang: Die MNET-Session gibt es nicht!", -> "No access; The MNET-Session does not exist!"
Tried with Mahara 1.6.1 & 1.6.2 on Ubuntu 12.04.1.
This bug is reproducible.
description: | updated |
Changed in mahara: | |
status: | New → Confirmed |
importance: | Undecided → Critical |
milestone: | none → 1.7.0 |
Changed in mahara: | |
status: | Confirmed → Fix Committed |
Changed in mahara: | |
status: | Fix Committed → Fix Released |
Current theory is that it's the fix for the following described security bug: http:// blog.mozilla. org/security/ 2012/10/ 10/security- vulnerability- in-firefox- 16/