WebKit Bugzilla
New
Browse
Search+
Log In
×
Sign in with GitHub
or
Remember my login
Create Account
·
Forgot Password
Forgotten password account recovery
RESOLVED DUPLICATE of
bug 262777
264263
[GTK] libwebkit2gtk broke SAML auth on Linux
https://bugs.webkit.org/show_bug.cgi?id=264263
Summary
[GTK] libwebkit2gtk broke SAML auth on Linux
Sean
Reported
2023-11-06 09:04:11 PST
After upgrading to version 2.4.1 of libwebkit2gtk we see some embedded browser failures. At first, this seemed to be an IDP issue but we're getting reports of many IDPs(Duo, Okta) with the same errors. During testing, we see that the user attempts to log in via SAML to an IDP and the site just refreshes and nothing happens. In the console logs we see this being logged: [Warning] [blocked] The page at [IDP LOGIN URL...] <IDP LOGIN URL...> was not allowed to display insecure content from blob:
https://cisco.login.duosecurity.com/5d947f3c-4c16-4067-867d-72149959feb1
. (login.js, line 2) Downgrading seems to fix this issue. Were there any changes to these policies that we can handle differently? Please let me know if there is any further information I can add or reproduction steps you need.
Attachments
Add attachment
proposed patch, testcase, etc.
Michael Catanzaro
Comment 1
2023-11-06 09:15:43 PST
Hi there, this is
bug #262777
. It will be fixed in 2.42.2, which is coming soon. *** This bug has been marked as a duplicate of
bug 262777
***
Sean
Comment 2
2023-11-06 09:18:40 PST
What is the bug ID of the duplicate so I can take a look?
Sean
Comment 3
2023-11-06 09:22:09 PST
(In reply to Sean from
comment #2
)
> What is the bug ID of the duplicate so I can take a look?
Ignore this, didn't realized it linked
Note
You need to
log in
before you can comment on or make changes to this bug.
Top of Page
Format For Printing
XML
Clone This Bug