Open Bug 1939297 Opened 2 months ago Updated 25 days ago

yubikey passkey login for github.com auto fails on samsung devices

Categories

(Fenix :: WebAuthn, defect)

Firefox 133
All
Android
defect

Tracking

(Not tracked)

UNCONFIRMED

People

(Reporter: mozbug-42f86e49, Unassigned, NeedInfo)

References

Details

Attachments

(1 file)

User Agent: Mozilla/5.0 (X11; Linux x86_64; rv:132.0) Gecko/20100101 Firefox/132.0

Steps to reproduce:

I can reproduce this with the following steps:

  1. Take a yubikey 5C (or yubikey 5 NFC + type A to type C adaptor) which contains a passkey for github.com
  2. Plug the key into samsung z flip 6 or samsung A24 (other samsung phones will probably have the same issue, only tested with those)
  3. Open firefox
  4. Go to github.com
  5. Click "sign in" in the top right corner
  6. Press "sign in with a passkey"
  7. Firefox opens some samsung chooser, choose "other devices > show qr code"

Actual results:

Login fails ("authentification failed") and firefox opens android/google's prompt to enter pin for the yubikey (but the login already failed, so it does not matter).

Expected results:

Either

  1. Firefox opens android/google's prompt from the start (where you could then choose "use a different device" and enter the pin for the yubikey) (this is what chrome does, where the login succeeds), or
  2. the login shouldn't fail when using the "other devices > show qr code" option

(attached are 3 screenshots, from left to right: firefox showing samsung prompt, firefox causing auth fail, chrome showing showing android/google prompt)

Couldn't test on nightly, cause nightly fails even worse, see https://bugzilla.mozilla.org/show_bug.cgi?id=1939298 (this might or might not be the same issue, to be safe opened as separate, since the symptoms are different, even if the ultimate result (can't login into github) is the same).

The severity field is not set for this bug.
:jmahon, could you have a look please?

For more information, please visit BugBot documentation.

Flags: needinfo?(gloss-manhood-rise)

Hey John, I don't believe anyone on the Android team currently has a Yubikey. Is this something that you can reproduce?

Flags: needinfo?(jschanck)
See Also: → 1939298
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: