Uploaded image for project: 'Percona XtraDB Cluster'
  1. Percona XtraDB Cluster
  2. PXC-3872

Normal user dropping system user

Details

    • Yes
    • Yes

    Description

      User without `system_user` privilege is able to drop system users.

       

      Replication issue:

      1) Log in as root and create 1 normal user & 1 system user. 

      Create user x (normal user) with create user privilege.

      Create user y (system user) with all privileges.

       

      2) Log in as user x and drop user y.

      Error with access denied. But following selects will have error with WSREP not prepared. (due to inconsistency with other nodes)

       

      3) Check mysql error log:

      origin node initiated vote with access denied operation, other nodes vote as succeed hence user y will be dropped. origin node will proceed to IST from other pxc nodes.

       

      4) When origin node is ready, user y has been dropped. 

       

      Commands and logs are written in percona forum

      Attachments

        Activity

          People

            kamil.holubicki Kamil Holubicki
            jackc jack
            Votes:
            2 Vote for this issue
            Watchers:
            5 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Time Spent - 1 day, 4 hours, 54 minutes Remaining Estimate - 1 hour, 58 minutes
                1h 58m
                Logged:
                Time Spent - 1 day, 4 hours, 54 minutes Remaining Estimate - 1 hour, 58 minutes
                1d 4h 54m

                Smart Checklist