Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 1234927

Summary: HotRod size method doesn't check BULK_READ permission
Product: [JBoss] JBoss Data Grid 6 Reporter: William Burns <wburns>
Component: InfinispanAssignee: Tristan Tarrant <ttarrant>
Status: CLOSED UPSTREAM QA Contact: Martin Gencur <mgencur>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 6.5.0CC: chuffman, jdg-bugs
Target Milestone: ER1   
Target Release: 6.5.1   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
When <methodname>size()</methodname> is performed using the HotRod client, a MapReduce task is invoked internally to determine the total number of entries present in the cache. Previously this operation did not require any permissions; however, a check has been added to ensure the role invoking <methodname>size()</methodname> has the BULK_READ permission. This issue is resolved as of Red Hat JBoss Data Grid 6.5.1.
Story Points: ---
Clone Of:
: 1247380 (view as bug list) Environment:
Last Closed: 2025-02-10 03:47:45 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 1247380    

Description William Burns 2015-06-23 14:06:00 UTC
Description of problem:
HotRod size method currently does a map reduce task that doesn't check the authorization manager before running.  We should leave the behavior and add a check to the authorization manager before invoking the map reduce task.

Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1.
2.
3.

Actual results:


Expected results:


Additional info:

Comment 2 William Burns 2015-06-23 15:51:16 UTC
PR: https://github.com/infinispan/jdg/pull/688

Comment 5 Red Hat Bugzilla 2025-02-10 03:47:45 UTC
This product has been discontinued or is no longer tracked in Red Hat Bugzilla.