Your message dated Tue, 18 Sep 2012 10:41:44 +0000
with message-id <[email protected]>
and subject line Bug#687346: fixed in krb5-sync 2.2-3
has caused the Debian Bug report #687346,
regarding krb5-sync-plugin: causes segfault on -randkey changes
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
687346: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=687346
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: krb5-sync-plugin
Version: 2.2-1
Severity: grave
Tags: upstream
Justification: renders package unusable

The hook is called on key changes with a NULL password, which results
in a strlen(NULL) in the plugin and a segfault in kadmind.  Fix coming
shortly.

-- System Information:
Debian Release: wheezy/sid
  APT prefers testing
  APT policy: (990, 'testing'), (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 3.2.0-3-686-pae (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages krb5-sync-plugin depends on:
ii  libc6              2.13-35
ii  libkrb5-3          1.10.1+dfsg-2
ii  libldap-2.4-2      2.4.31-1
ii  multiarch-support  2.13-35

Versions of packages krb5-sync-plugin recommends:
pn  krb5-admin-server  <none>
pn  krb5-sync-tools    <none>

krb5-sync-plugin suggests no packages.

--- End Message ---
--- Begin Message ---
Source: krb5-sync
Source-Version: 2.2-3

We believe that the bug you reported is fixed in the latest version of
krb5-sync, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Russ Allbery <[email protected]> (supplier of updated krb5-sync package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Mon, 17 Sep 2012 20:24:01 -0700
Source: krb5-sync
Binary: krb5-sync-plugin krb5-sync-tools
Architecture: source i386
Version: 2.2-3
Distribution: unstable
Urgency: low
Maintainer: Russ Allbery <[email protected]>
Changed-By: Russ Allbery <[email protected]>
Description: 
 krb5-sync-plugin - MIT Kerberos Active Directory synchronization plugin
 krb5-sync-tools - Kerberos Active Directory synchronization tools
Closes: 687346
Changes: 
 krb5-sync (2.2-3) unstable; urgency=low
 .
   * Apply upstream commit to silently ignore password changes with a NULL
     password, only new keys.  This represents a key randomization, such as
     from addprinc -randkey, which is outside the synchronization scope of
     this package.  Without this change, the plugin would segfault on that
     operation.  (Closes: #687346)
Checksums-Sha1: 
 50fd15a9d2945d07cc5c07550348991cfc74d9b6 1465 krb5-sync_2.2-3.dsc
 10f16fc6606bec5cb3d575a259b643917ff6851e 10584 krb5-sync_2.2-3.debian.tar.gz
 a9cbd3ab6d177893a86cff83fff4ddf05cf707ff 32020 krb5-sync-plugin_2.2-3_i386.deb
 7ebede8268250ccfd2481758e41cf29ce975edfa 48942 krb5-sync-tools_2.2-3_i386.deb
Checksums-Sha256: 
 1d68b4804c7aaba0823108cacbe61642156253d39d88337d9e70fba9b42337df 1465 
krb5-sync_2.2-3.dsc
 a5d790b7fa518a69e20f2f784a274480ceecebe371199bae19593de2174e25a3 10584 
krb5-sync_2.2-3.debian.tar.gz
 8f37619737aa37d8cf3560b10994bcbf1b1e01efec07b595a11555badd2fec59 32020 
krb5-sync-plugin_2.2-3_i386.deb
 8aadb3d162391069c24f70d2bb30cbefa509b0a6f895a041a4d0472c66c8af8e 48942 
krb5-sync-tools_2.2-3_i386.deb
Files: 
 5d48dac86b78f86f09806035ccdd8b1d 1465 net extra krb5-sync_2.2-3.dsc
 f50444a3db7d9988263927e8e44a35c7 10584 net extra krb5-sync_2.2-3.debian.tar.gz
 2d0f9cae495b93f8ec8be86c0df405fe 32020 net extra 
krb5-sync-plugin_2.2-3_i386.deb
 a3c20c32936db4ccaa7e793698520cf7 48942 net extra krb5-sync-tools_2.2-3_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iQEcBAEBCAAGBQJQV+pCAAoJEH2AMVxXNt51VscH/Ri5GRcqaEqd4jzR+vCwzeH6
yZpy8NCGg/tP+8hyyKOfiJxHvKaC25nnDMPZcKP3Lg3BEUEWKeNpsQD6iZd8eiCo
UpFDJIrHQ0gbtsouQgSWAWTigAtwAIdv7Urtil2gGrNeJjjGYnxgCQRpinKGDMlM
M/sGdUP5LeRFzdB2yEM07QFgjRYTEhXA3ZqRiCezPljVnZKJy1NRcg9aDMk1ua0Q
VOpHvy/BnP88bFK9efnME1mRdFpwrEZ5A06E7mKH5tkIueDMtPBvqD9BCsNxIn/H
u7Ne0ROvqONcndmPxm2bS2G1bCKIUt/7Kbh+jO6FHrpIysUHC16gTymIBreE5yM=
=qJSK
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to