Changeset - 30d61922f24e
default
0
1
0
auth: fix crash on invalid bcrypt password
When an invalid password was specified, it would with an exception:
File "kallithea/lib/auth.py", in check_password
return bcrypt.checkpw(safe_str(password), safe_str(hashed))
ValueError: Invalid hashed_password salt
We do apparently have to catch ValueError and treat it as "invalid password".
When an invalid password was specified, it would with an exception:
File "kallithea/lib/auth.py", in check_password
return bcrypt.checkpw(safe_str(password), safe_str(hashed))
ValueError: Invalid hashed_password salt
We do apparently have to catch ValueError and treat it as "invalid password".
1 file changed with 7 insertions and 1 deletions:
0 comments (0 inline, 0 general)
0 comments (0 inline, 0 general)