[Samba] Segfault in Samba

Dale Schroeder dale at BriannasSaladDressing.com
Mon Sep 18 16:50:53 GMT 2006

What do the messages below mean?  I lost all network connectivity and 
started receiving these messages after changing username map from root = 
DELSOLW2K\Administrator to root = @"DELSOLW2K\Domain Admins".
The system is Debian Sarge with Simo's latest debs and security = ADS.

Using host libthread_db library "/lib/tls/libthread_db.so.1".
`system-supplied DSO at 0xffffe000' has disappeared; keeping its symbols.
[Thread debugging using libthread_db enabled]
[New Thread 1078566496 (LWP 3108)]
0x402427be in waitpid () from /lib/tls/libc.so.6
#0  0x402427be in waitpid () from /lib/tls/libc.so.6
#1  0x401ea699 in strtold_l () from /lib/tls/libc.so.6
#2  0x0822d127 in smb_panic (why=0x833107d "internal error") at lib/util.c:1601
#3  0x0821adec in fault_report (sig=6) at lib/fault.c:47
#4  <signal handler called>
#5  0x401dd947 in raise () from /lib/tls/libc.so.6
#6  0x401df0c9 in abort () from /lib/tls/libc.so.6
#7  0x0823285b in talloc_chunk_from_ptr (ptr=0xbfffc900) at lib/talloc.c:119
#8  0x082330ed in _talloc_realloc (context=0x842bfe8, ptr=0xbfffc900, 
    size=136, name=0x830c1ae "DOM_SID") at lib/talloc.c:617
#9  0x082276f0 in add_sid_to_array (mem_ctx=0x842bfe8, sid=0xbfffc8b0, 
    sids=0xbfffc89c, num=0xbfffc8a4) at lib/util_sid.c:587
#10 0x0826c9f1 in create_token_from_username (mem_ctx=0x842bfe8, 
    username=0xbfffe8e0 "DELSOLW2K\\Dale", is_guest=0, uid=0xbfffc9ec, 
    gid=0xbfffc9f0, found_username=0xbfffc9f4, token=0xbfffc9f8)
    at auth/auth_util.c:1230
#11 0x0826cf25 in user_in_group_sid (username=0xbfffe8e0 "DELSOLW2K\\Dale", 
    group_sid=0xbfffca30) at auth/auth_util.c:1271
#12 0x0826d123 in user_in_group (username=0xbfffe8e0 "DELSOLW2K\\Dale", 
    groupname=0x83834a1 "DELSOLW2K\\Domain Admins") at auth/auth_util.c:1308
#13 0x0809841c in user_in_list (user=0xbfffe8e0 "DELSOLW2K\\Dale", 
    list=0x83ef350) at smbd/password.c:520
#14 0x08094002 in map_username (user=0xbfffe8e0 "DELSOLW2K\\Dale")
    at smbd/map_username.c:162
#15 0x080bece7 in reply_spnego_kerberos (conn=0x0, inbuf=0x407ab008 "", 
    outbuf=0x407cc008 "", length=1458, bufsize=131072, secblob=0xbfffeb60)
    at smbd/sesssetup.c:292
#16 0x080bfc05 in reply_spnego_negotiate (conn=0x0, inbuf=0x407ab008 "", 
    outbuf=0x407cc008 "", vuid=100, length=1458, bufsize=131072, blob1=
      {data = 0x8425030 "`\202\005&\006\006+\006\001\005\005\002 \202\005\0320\202\005\026 $0\"\006\t*\206H\202÷\022\001\002\002\006\t*\206H\206÷\022\001\002\002\006\n+\006\001\004\001\2027\002\002\n¢\202\004ì\004\202\004è`\202\004ä\006\t*\206H\206÷\022\001\002\002\001", length = 1322, free = 0x822a7b0 <free_data_blob>}, auth_ntlmssp_state=0x83cdcc0) at smbd/sesssetup.c:558
#17 0x080c0334 in reply_sesssetup_and_X_spnego (conn=0x0, inbuf=0x407ab008 "", 
    outbuf=0x407cc008 "", length=1458, bufsize=131072) at smbd/sesssetup.c:721
#18 0x080c1647 in reply_sesssetup_and_X (conn=0x0, inbuf=0x407ab008 "", 
    outbuf=0x407cc008 "", length=1458, bufsize=131072) at smbd/sesssetup.c:863
#19 0x080e9c5f in switch_message (type=115, inbuf=0x407ab008 "", 
    outbuf=0x407cc008 "", size=1458, bufsize=131072) at smbd/process.c:991
#20 0x080e9e84 in construct_reply (inbuf=0x407ab008 "", outbuf=0x407cc008 "", 
    size=1458, bufsize=131072) at smbd/process.c:1018
#21 0x080ea0a2 in process_smb (inbuf=0x407ab008 "", outbuf=0x407cc008 "")
    at smbd/process.c:1117
#22 0x080eaf85 in smbd_process () at smbd/process.c:1665
#23 0x082c273e in main (argc=2, argv=0xbffffda4) at smbd/server.c:1024

