[PATCH] getpwent_list bug

Gerald (Jerry) Carter jerry at samba.org
Mon Feb 9 18:40:29 GMT 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Bostjan Golob wrote:
| while testing samba 3.0.2rc2 (and since today, 3.0.2), I
| came across a bug while doing querygroupmem. After some hunting,
| it appears that the bug itself is in getpwent_list function, where
| pw_name member of structure gets overwritten with pw_gecos,
| pw_dir and pw_shell while copying the passwd structure.
| Patch attached.
|
| Bostjan Golob

Thanks.  Got it.  I'm evaluating how bad this will affect 3.0.2
(under what circumstances).  I know if will affect samba members
of a Samba domain mostly, but I think our exposure may be lower
than I first though.

comments ?  How did you notice the broken brhavior?




cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFAJ9QdIR7qMdg1EfYRAiL6AKDo1wUWYQrNmRGsYpjNa6YZ8IEzwQCfaI0B
9xQ4gr0mkwK6KFZrppKBU9E=
=EVjt
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list