Your message dated Wed, 30 Aug 2006 23:01:41 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Bug#371076: fixed in cfs 1.4.1-15sarge1
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--- Begin Message ---
Package: cfs
Version: 1.4.1-16
Severity: important

Well, after a couple months, a couple days ago I just updated
the whole system. Still trying to understand which is the cause,
but when writing 'some files' cfsd crashes with a SIGSEGV 
and leaves my directory unusable. 

  I've been using cfsd for years now, and I don't believe the 
directory to be corrupted. The application causing the problem
is probably procmail.

By recompiling with nostrip,noopt, I get the following gdb backtrace:

Program received signal SIGSEGV, Segmentation fault.
0x080507ab in dodecrypt (k=0x809f65c, s=0xafd48a10 "ml/\n\n", l=3031, 
salt=2147480632, vect=0x80b6170 "69e3f26d") at cfs_fh.c:358
358                             s[i+j] ^= k->secmask[(i+j+salt)%smsize];
(gdb) bt
#0  0x080507ab in dodecrypt (k=0x809f65c, s=0xafd48a10 "ml/\n\n", l=3031, 
salt=2147480632, vect=0x80b6170 "69e3f26d") at cfs_fh.c:358
#1  0x0804ff07 in writeblock (
    blk=0x80b6608 "From ccontavalli  Wed Jun  7 09:23:54 2006\nReturn-Path: 
<[EMAIL PROTECTED]>\nDelivered-To: [EMAIL PROTECTED]:
from mail.commedia.it [83.103.103.151]\n\tby localhost.localdoma"..., fd=4, 
offset=2147480637, len=3010, key=0x809f65c, vect=0x80b6170 "69e3f26d")
    at cfs_fh.c:164
#2  0x0804e228 in nfsproc_write_2_svc (ap=0xafd4ab24, rp=0xafd4b110) at 
cfs_nfs.c:410
#3  0x0804bda1 in nfs_program_2 (rqstp=0xafd4b110, transp=0x809abf8) at 
nfsproto_svr.c:161
#4  0xa7ee797c in svc_getreq_common () from /lib/tls/libc.so.6
#5  0xa7ee75d1 in svc_getreq_poll () from /lib/tls/libc.so.6
#6  0xa7ee7f9e in svc_run () from /lib/tls/libc.so.6
#7  0x08049ade in main (argc=1, argv=0xafd4b274) at cfs.c:263
(gdb) p i
$1 = 3016
(gdb) p j
$2 = 1
(gdb)




-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.16-2-686
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages cfs depends on:
ii  libc6                         2.3.6-7    GNU C Library: Shared libraries
ii  nfs-kernel-server             1:1.0.7-17 Kernel NFS server support

cfs recommends no packages.

-- no debconf information


--- End Message ---
--- Begin Message ---
Source: cfs
Source-Version: 1.4.1-15sarge1

We believe that the bug you reported is fixed in the latest version of
cfs, which is due to be installed in the Debian FTP archive:

cfs_1.4.1-15sarge1.diff.gz
  to pool/main/c/cfs/cfs_1.4.1-15sarge1.diff.gz
cfs_1.4.1-15sarge1.dsc
  to pool/main/c/cfs/cfs_1.4.1-15sarge1.dsc
cfs_1.4.1-15sarge1_i386.deb
  to pool/main/c/cfs/cfs_1.4.1-15sarge1_i386.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Gerrit Pape <[EMAIL PROTECTED]> (supplier of updated cfs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Fri, 14 Jul 2006 21:15:07 +0000
Source: cfs
Binary: cfs
Architecture: source i386
Version: 1.4.1-15sarge1
Distribution: stable-security
Urgency: high
Maintainer: Gerrit Pape <[EMAIL PROTECTED]>
Changed-By: Gerrit Pape <[EMAIL PROTECTED]>
Description: 
 cfs        - Cryptographic Filesystem
Closes: 371076
Changes: 
 cfs (1.4.1-15sarge1) stable-security; urgency=high
 .
   * cfs_fh.c: doencrypt(), dodecrypt(): make salt unsigned long, not int,
     as so the fuctions are called in read/writeblock(), de/encryptname()
     (fixes SIGSEGV due to integer overflow, thx Carlo Contavalli, closes:
     #371076).
Files: 
 460ec2da0664857b55354a40aaf71961 520 utils optional cfs_1.4.1-15sarge1.dsc
 3ce2e01211dafe7bfb44849894926eda 98376 utils optional cfs_1.4.1.orig.tar.gz
 c9d5f2c91ee97c8c5b694da6806c0d24 18505 utils optional 
cfs_1.4.1-15sarge1.diff.gz
 e1fdcfb68fe51980f0540da732881b95 185708 utils optional 
cfs_1.4.1-15sarge1_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFEz5W1Xm3vHE4uyloRAsETAJ0YZtoGGQn55ta4yTTXEw9OL+MZDQCdFjJ6
JNAicWcgCvbNieiFr6hNVUw=
=WDn7
-----END PGP SIGNATURE-----


--- End Message ---

Reply via email to