[wp-trac] [WordPress Trac] #16623: Authentication Unique Keys and Salts broke wp-config.

WordPress Trac wp-trac at lists.automattic.com
Wed Feb 23 23:21:44 UTC 2011


#16623: Authentication Unique Keys and Salts broke wp-config.
--------------------------------+----------------------------
 Reporter:  christopherross     |       Owner:
     Type:  defect (bug)        |      Status:  new
 Priority:  normal              |   Milestone:  WordPress.org
Component:  WordPress.org site  |     Version:  3.0
 Severity:  normal              |  Resolution:
 Keywords:                      |
--------------------------------+----------------------------
Changes (by dd32):

 * component:  Upgrade/Install => WordPress.org site
 * milestone:  Awaiting Review => WordPress.org


Old description:

> I've never seen this happen before but today I was installing WordPress
> and the Authentication Unique Keys and Salts broke the site during
> install.
>
> define('NONCE_SALT',       'J6:6$c."Eec\_WQ:B2V \h
> 3,WZ?q<O[uTYq_~(@+[^T@}M,}yq6JKT3)PgKqRd\');
>
> I've attached a Dreamweaver screenshot where the code highlighter found
> the error, after replacing the J6:6$c."Eec\_WQ:B2V \h
> 3,WZ?q<O[uTYq_~(@+[^T@}M,}yq6JKT3)PgKqRd\ above with a clean salt, it
> worked again.

New description:

 I've never seen this happen before but today I was installing WordPress
 and the Authentication Unique Keys and Salts broke the site during
 install.

 `define('NONCE_SALT',       'J6:6$c."Eec\_WQ:B2V \h
 3,WZ?q<O[uTYq_~(@+[^T@}M,}yq6JKT3)PgKqRd\');`

 I've attached a Dreamweaver screenshot where the code highlighter found
 the error, after replacing the `J6:6$c."Eec\_WQ:B2V \h
 3,WZ?q<O[uTYq_~(@+[^T@}M,}yq6JKT3)PgKqRd\` above with a clean salt, it
 worked again.

--

Comment:

 Moving to !WordPress.org - can be moved back for 3.2 after API change is
 done perhaps

 The API is returning a slash at the end of the string, whilst that's
 legit, core doesn't escape the string, and appears to be using it as-is.
 The result is the closing quote is escaped, causing.. well.. what you've
 got there

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/16623#comment:1>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list