S4: SEGV in acl_validate_spn_value: dnsHostName NULL

Nadezhda Ivanova nivanova at samba.org
Fri Mar 2 07:00:41 MST 2012


Hi Arvid,
Its fine by me. I am not sure if not having this attribute set will not
cause other problems - perhaps we should have it set during migration?
Either way, I think its a reasonable check to add. If no one else applies
it, I'll do it in a few hours when I get off work.

Regards,
Nadya

On Fri, Mar 2, 2012 at 3:34 PM, Arvid Requate <requate at univention.de> wrote:

> Hello,
>
> this is a proposal for a patch addressing segmentation faults due to a
> dnsHostName NULL pointer in acl_validate_spn_value. Diff is attached. The
> segfault closes all sockets in /var/run/samba/ncalrpc effecting netlogon
> and
> replication failures. The issue seems to be triggered in situations where
> clients attempt to register a new SPN while their SAM account object does
> not
> provide a value for the "dnsHostName" attribute. This seems to be the case
> for
> machine accounts in domains migrated by samba3upgrade.
>
> Cheers,
> Arvid
>
> --
> Arvid Requate
> Open Source Software Engineer
>
> Univention GmbH
> Linux for your business
> Mary-Somerville-Str.1
> 28359 Bremen
> Tel. : +49 421 22232-0
> Fax : +49 421 22232-99
>
> requate at univention.de
> http://www.univention.de
>
> Geschäftsführer: Peter H. Ganten
> HRB 20755 Amtsgericht Bremen
> Steuer-Nr.: 71-597-02876
>


More information about the samba-technical mailing list