Option to specify CRL is missing

Bug #1998778 reported by Thomas Dreibholz
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
mysql-connector-python (Ubuntu)
Confirmed
Wishlist
Unassigned

Bug Description

The Python connector for MySQL has an option to specify a CA, but there is no corresponding option to specify a CRL or path to CRLs. That is, mysql/connector/constants.py e.g. defines 'ssl_ca', but there is no corresponding 'ssl_crl'. So, a client based on the MySQL connector will be unable to detect a revoked server certificate.

information type: Private Security → Public
information type: Public → Public Security
Revision history for this message
Marc Deslauriers (mdeslaur) wrote :

Thanks for reporting this issue. Ultimately, it should be reported to the upstream developers of the connector which is Oracle.

Changed in mysql-connector-python (Ubuntu):
status: New → Confirmed
importance: Undecided → Wishlist
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.