Segfault in the NDR printing routines

Volker Lendecke Volker.Lendecke at SerNet.DE
Fri Nov 10 15:27:39 GMT 2006


Hi, Jelmer!

While trying to chase down a remote shutdown segfault I've
come across a bug in the NDR printing routines:

Look at ndr_print_initshutdown_String in current 3_0. In
line 99 we check if r->name is NULL, after having
dereferenced it in line 95. I'm talking about
winreg_InitiateSystemShutdown with a NULL message string. It
is trivial to reproduce: On an XP box do a "shutdown -s -m
\\samba-server" with current 3_0 as server.

Volker
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba-technical/attachments/20061110/436bd088/attachment.bin


More information about the samba-technical mailing list