[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-06-01 Thread Nish Aravamudan
Fixed in sssd 1.15.2 upstream (which is in 17.04 and 17.10). ** Changed in: sssd (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1669712 Title: Newline

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-06-01 Thread Launchpad Bug Tracker
This bug was fixed in the package sssd - 1.11.8-0ubuntu0.6 --- sssd (1.11.8-0ubuntu0.6) trusty; urgency=medium * d/p/pidfile-creation.diff: Delay the pidfile creation until the responders are up (LP: #1566508) * d/p/sanitize_newline.diff: Sanitize newline and carriage return

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-25 Thread Victor Tapia
# VERIFICATION FOR TRUSTY (1.11.8-0ubuntu0.6) Same script as in #14. This is the output: - SSSD version ii sssd-common 1.11.8-0ubuntu0.6amd64 System Security Services Daemon -- common files - Query "user1" user1:*:1:5000:user1:/home/user1:/bin/ba

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-22 Thread Andy Whitcroft
Hello Victor, or anyone else affected, Accepted sssd into trusty-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/sssd/1.11.8-0ubuntu0.6 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See https://wiki

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-04 Thread Launchpad Bug Tracker
This bug was fixed in the package sssd - 1.13.4-3ubuntu0.4 --- sssd (1.13.4-3ubuntu0.4) yakkety; urgency=medium * d/p/pidfile-creation.diff: Delay the pidfile creation until the responders are up (LP: #1566508) * d/p/sanitize_newline.diff: Sanitize newline and carriage return

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-04 Thread Launchpad Bug Tracker
This bug was fixed in the package sssd - 1.13.4-1ubuntu1.5 --- sssd (1.13.4-1ubuntu1.5) xenial; urgency=medium * d/p/pidfile-creation.diff: Delay the pidfile creation until the responders are up (LP: #1566508) * d/p/sanitize_newline.diff: Sanitize newline and carriage return

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-04 Thread Victor Tapia
#VERIFICATION FOR YAKKETY (1.13.4-3ubuntu0.4) Same script as in #14. This is the output: ubuntu@vtapia-yakkety:~$ sudo ./san.sh - SSSD version ii sssd-common1.13.4-3ubuntu0.4 amd64System Security Services Daemon -- common files

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-05-04 Thread Victor Tapia
#VERIFICATION FOR XENIAL (1.13.4-1ubuntu1.5) Using the following script to test "faulty" users (with trailing /r /n): ubuntu@vtapia-xenial:~$ cat san.sh #!/bin/bash echo '- SSSD version' dpkg -l | grep sssd-common echo '- Query "user1"' sss_cache -E; getent passwd 'user1' ldbsearch -H /var/lib

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-04-25 Thread Ɓukasz Zemczak
Hello Victor, or anyone else affected, Accepted sssd into yakkety-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/sssd/1.13.4-3ubuntu0.4 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See https://wik

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-04-12 Thread Victor Tapia
** Tags removed: verification-failed ** Tags added: verification-failed-xenial verification-failed-yakkety -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1669712 Title: Newline characters (\n) must b

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-04-12 Thread Victor Tapia
** Tags removed: verification-done-xenial verification-done-yakkety verification-needed ** Tags added: verification-failed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1669712 Title: Newline chara

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-31 Thread Victor Tapia
# VERIFICATION FOR YAKKETY Using the same verification used for Xenial: root@vtapia-yakkety:/home/ubuntu# sss_cache -E; getent passwd 'user1' user1:*:1:5000:user1:/home/user1:/bin/bash root@vtapia-yakkety:/home/ubuntu# sudo ldbsearch -H /var/lib/sss/db/cache_openstacklocal.ldb -b name=user

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-30 Thread Victor Tapia
# VERIFICATION FOR XENIAL Following the instructions in the description, 'user1' is present in the db: root@vtapia-xenial:/var/log/sssd# sudo sss_cache -E; getent passwd 'user1' root@vtapia-xenial:/var/log/sssd# sudo ldbsearch -H /var/lib/sss/db/cache_openstacklocal.ldb -b name=user1,cn=users,c

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-28 Thread Timo Aaltonen
Hello Victor, or anyone else affected, Accepted sssd into yakkety-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/sssd/1.13.4-3ubuntu0.3 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See https://wik

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-28 Thread Timo Aaltonen
Hello Victor, or anyone else affected, Accepted sssd into xenial-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/sssd/1.13.4-1ubuntu1.4 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See https://wiki

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-10 Thread Ubuntu Foundations Team Bug Bot
The attachment "xenial-sssd_1.13.4-1ubuntu1.4.debdiff" seems to be a debdiff. The ubuntu-sponsors team has been subscribed to the bug report so that they can review and hopefully sponsor the debdiff. If the attachment isn't a patch, please remove the "patch" flag from the attachment, remove the "

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-10 Thread Victor Tapia
** Patch added: "zesty-sssd_1.15.0-3ubuntu5.debdiff" https://bugs.launchpad.net/ubuntu/+source/sssd/+bug/1669712/+attachment/4835276/+files/zesty-sssd_1.15.0-3ubuntu5.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-10 Thread Victor Tapia
** Description changed: + [Impact] + + * When a username with a trailing newline or carriage return character + is used for authentication, the malformed LDAP query will return that + the username does not exist and then the username will be erased from + the LDB cache. + + [Test Case] + + 1.

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-10 Thread Victor Tapia
** Patch added: "yakkety-sssd_1.13.4-3ubuntu0.3.debdiff" https://bugs.launchpad.net/ubuntu/+source/sssd/+bug/1669712/+attachment/4835275/+files/yakkety-sssd_1.13.4-3ubuntu0.3.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-10 Thread Victor Tapia
** Patch added: "trusty-sssd_1.11.8-0ubuntu0.7.debdiff" https://bugs.launchpad.net/ubuntu/+source/sssd/+bug/1669712/+attachment/4835277/+files/trusty-sssd_1.11.8-0ubuntu0.7.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. ht

[Bug 1669712] Re: Newline characters (\n) must be sanitized before LDAP requests take place.

2017-03-06 Thread Nish Aravamudan
Upstream PR is at: https://github.com/SSSD/sssd/pull/178 ** Changed in: sssd (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1669712 Title: Newline characters (