[PATCH] CVE-2014-8121: Fix nss_files file management [BZ#18007]
Florian Weimer
fweimer@redhat.com
Mon Feb 23 11:42:00 GMT 2015
Robin Hack discovered that Samba would enter an infinite loop when
processing quota-related requests. It turns out this is a bug in the
nss_files database. Performing a lookup in the middle of an iteration
(say, getwuid between getpwent) effectively resets the file pointer, so
that the iteration starts again from the beginning.
Tested on x86_64-redhat-linux-gnu. Okay to commit?
--
Florian Weimer / Red Hat Product Security
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-CVE-2014-8121-Do-not-close-NSS-files-database-during.patch
Type: text/x-patch
Size: 7782 bytes
Desc: not available
URL: <http://sourceware.org/pipermail/libc-alpha/attachments/20150223/e7b7305a/attachment.bin>
More information about the Libc-alpha
mailing list