** Changed in: libgcrypt11 (Debian)
Status: Unknown => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
** Bug watch added: Debian Bug tracker #566351
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=566351
** Changed in: libgcrypt11 (Debian)
Status: Fix Released => Unknown
** Changed in: libgcrypt11 (Debian)
Remote watch: Debian Bug tracker #368297 => Debian Bug tracker #566351
**
** Changed in: gnutls26 (Debian)
Status: Unknown => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
** Changed in: libgcrypt11 (Ubuntu Maverick)
Milestone: maverick-updates => None
** Tags added: lucid precise
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL
** No longer affects: sudo (Ubuntu Precise)
** No longer affects: sudo (Ubuntu Oneiric)
** No longer affects: gnutls26 (Ubuntu Karmic)
** No longer affects: gnutls26 (Ubuntu Lucid)
** No longer affects: gnutls26 (Ubuntu Maverick)
--
You received this bug notification because you are a member
** No longer affects: gnutls26 (Ubuntu Natty)
** No longer affects: gnutls26 (Ubuntu Oneiric)
** No longer affects: gnutls26 (Ubuntu Precise)
** Changed in: libgcrypt11 (Ubuntu Natty)
Importance: Undecided => Medium
** Changed in: libgcrypt11 (Ubuntu Natty)
Status: Invalid => Won't
** Bug watch added: Debian Bug tracker #368297
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=368297
** Changed in: libgcrypt11 (Debian)
Status: Fix Released => Unknown
** Changed in: libgcrypt11 (Debian)
Remote watch: Debian Bug tracker #566351 => Debian Bug tracker #368297
**
** Changed in: libgcrypt11 (Debian)
Status: Unknown => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
** Tags removed: removal-candidate
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage
** Changed in: gnutls26 (Debian)
Status: Confirmed = Fix Released
** Changed in: sudo (Debian)
Status: Confirmed = Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
** Changed in: libnss-ldap (Debian)
Status: Confirmed = Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
** Changed in: libgcrypt11 (Debian)
Status: Confirmed = Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
** Tags removed: lucid precise
** Package changed: eglibc (Ubuntu Karmic) = gnutls26 (Ubuntu Karmic)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid
** Tags added: karmic lucid verification-done-precise
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and
** Package changed: openldap (Debian) = libnss-ldap (Debian)
** Bug watch removed: Debian Bug tracker #545414
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=545414
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
** Changed in: sudo (Ubuntu Precise)
Status: New = Invalid
** Changed in: eglibc (Ubuntu Precise)
Status: New = Invalid
** Changed in: libnss-ldap (Ubuntu Precise)
Status: New = Invalid
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is
** Tags removed: glucid
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage notifications
** Changed in: sudo (Debian)
Status: Unknown = Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
** Changed in: libgcrypt
Status: Unknown = Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
** Changed in: openldap (Debian)
Importance: Undecided = Unknown
** Changed in: openldap (Debian)
Status: New = Unknown
** Changed in: openldap (Debian)
Remote watch: None = Debian Bug tracker #368297
** Changed in: sudo (Debian)
Status: Confirmed = Unknown
** Changed in:
The libcrypt11 package was released for precise and lucid and marked
won't fix for the others, so removing the verification-needed tag.
** Package changed: sudo (Kairos Linux) = libgcrypt
** Changed in: libgcrypt
Importance: High = Unknown
** Changed in: libgcrypt
Status: Confirmed =
** Changed in: openldap (Debian)
Status: Unknown = Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
Changes made above as per eol https://wiki.ubuntu.com/Releases
** Changed in: eglibc (Ubuntu Natty)
Status: New = Invalid
** Changed in: eglibc (Ubuntu Oneiric)
Status: New = Invalid
** Changed in: libgcrypt11 (Ubuntu Natty)
Status: Fix Committed = Invalid
** Changed in:
** Changed in: gnutls26 (Debian)
Status: New = Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
See http://bugs.debian.org/368297 http://bugs.debian.org/658896 for an
alternative patch to fix this bug that don't introduced any regression
(LP: #1013798).
The patch applied to libgcrypt (no-global-init-thread-callbacks.diff)
should be reverted and the following patch
Actual comment on the Debian bug history with the patch and the
explanation: http://bugs.debian.org/658896#104
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks
Are there any testers for Natty, Oneiric for this issue? I'd like to try
and get this one closed out.
Thanks
Adam
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL
** No longer affects: eglibc (Ubuntu)
** No longer affects: libnss-ldap (Ubuntu)
** No longer affects: sudo (Ubuntu)
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
** No longer affects: eglibc (Ubuntu)
** No longer affects: libnss-ldap (Ubuntu)
** No longer affects: sudo (Ubuntu)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL
Thanks Howard,
I'll get this reviewed and tested this week.
Adam
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications
Thanks Howard,
I'll get this reviewed and tested this week.
Adam
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
After reviewing this bug again I've outlined a possible course of
action:
a) Revert global_init patch in all supported distro's
b) Lucid users continue to use the nscd workaround.
c) Precise, Quantal, etc - rebuild gnutls without --with-libgcrypt in order to
make use of nettle.
Unfortunately,
Forcing use of nscd is a non-starter at many sites. Aside from cache
staleness issues, and nscd's well known instability, there's also the
issue that nscd doesn't intercept get*ent enumerations so things will
still crash depending on which nsswitch functions an app calls.
It would make sense to
This additional patch fixes the crash in bug#1013798.
** Attachment added: Addition to the patch in comment#73
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3328846/+files/dif.txt
--
You received this bug notification because you are a member of Ubuntu
Server Team,
Oops. The attachment in comment#166 includes the patch in #73, it is not
incremental.
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks
After reviewing this bug again I've outlined a possible course of
action:
a) Revert global_init patch in all supported distro's
b) Lucid users continue to use the nscd workaround.
c) Precise, Quantal, etc - rebuild gnutls without --with-libgcrypt in order to
make use of nettle.
Unfortunately,
Forcing use of nscd is a non-starter at many sites. Aside from cache
staleness issues, and nscd's well known instability, there's also the
issue that nscd doesn't intercept get*ent enumerations so things will
still crash depending on which nsswitch functions an app calls.
It would make sense to
This additional patch fixes the crash in bug#1013798.
** Attachment added: Addition to the patch in comment#73
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3328846/+files/dif.txt
--
You received this bug notification because you are a member of Ubuntu
Bugs, which
Oops. The attachment in comment#166 includes the patch in #73, it is not
incremental.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like
The patch applied to libgcrypt breaks other software:
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/1013798
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
The patch applied to libgcrypt breaks other software:
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/1013798
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using
Thank you!
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage
Thank you!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage notifications about this bug
Any chance of it getting to lucid-updates anytime soon?
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su,
This bug was fixed in the package libgcrypt11 - 1.4.4-5ubuntu2.1
---
libgcrypt11 (1.4.4-5ubuntu2.1) lucid-proposed; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Thu, 24 May 2012 16:31:52 -0400
**
Any chance of it getting to lucid-updates anytime soon?
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec,
This bug was fixed in the package libgcrypt11 - 1.4.4-5ubuntu2.1
---
libgcrypt11 (1.4.4-5ubuntu2.1) lucid-proposed; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Thu, 24 May 2012 16:31:52 -0400
**
Hey, raof,
I have tested the lucid-proposed version and it works fine. sudo no
longer segfaults.
Thanks for the package! I am waiting for it to arrive at lucid-updates!
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in
** Tags added: verification-done-lucid
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
Hey, raof,
I have tested the lucid-proposed version and it works fine. sudo no
longer segfaults.
Thanks for the package! I am waiting for it to arrive at lucid-updates!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
** Tags added: verification-done-lucid
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage
This bug was fixed in the package libgcrypt11 - 1.5.0-3ubuntu0.1
---
libgcrypt11 (1.5.0-3ubuntu0.1) precise-proposed; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Wed, 16 May 2012 13:35:06 -0400
**
** Tags removed: verification-done-precise
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
This bug was fixed in the package libgcrypt11 - 1.5.0-3ubuntu0.1
---
libgcrypt11 (1.5.0-3ubuntu0.1) precise-proposed; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Wed, 16 May 2012 13:35:06 -0400
**
** Tags removed: verification-done-precise
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To
Hello Matt, or anyone else affected,
Accepted libgcrypt11 into lucid-proposed. The package will build now and
be available in a few hours. Please test and give feedback here. See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed. Thank you in
** Branch linked: lp:ubuntu/lucid-proposed/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
Hello Matt, or anyone else affected,
Accepted libgcrypt11 into lucid-proposed. The package will build now and
be available in a few hours. Please test and give feedback here. See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed. Thank you in
** Branch linked: lp:ubuntu/lucid-proposed/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and
Lucid-proposed debiff
** Patch added: libgcrypt11_1.4.4-5ubuntu2.1.lucid.debdiff
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3161716/+files/libgcrypt11_1.4.4-5ubuntu2.1.lucid.debdiff
--
You received this bug notification because you are a member of Ubuntu
Server
** Changed in: libgcrypt11 (Ubuntu Lucid)
Status: Confirmed = Fix Committed
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid
not committed until it's available in -proposed
** Changed in: libgcrypt11 (Ubuntu Lucid)
Status: Fix Committed = In Progress
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
Lucid-proposed debiff
** Patch added: libgcrypt11_1.4.4-5ubuntu2.1.lucid.debdiff
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3161716/+files/libgcrypt11_1.4.4-5ubuntu2.1.lucid.debdiff
--
You received this bug notification because you are a member of Ubuntu
Bugs,
** Changed in: libgcrypt11 (Ubuntu Lucid)
Status: Confirmed = Fix Committed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su,
not committed until it's available in -proposed
** Changed in: libgcrypt11 (Ubuntu Lucid)
Status: Fix Committed = In Progress
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS
** Tags added: verification-done verification-done-precise
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec,
Ubuntu 12.04 Precise
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To
Ubuntu 12.04 Precise
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage notifications
Hello Martin,
I was affected by the bug ann I confirm that using the latest packages
from proposed solves the problem with my company's setup for LDAP.
Thanks a lot.
Regards.
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to
Hi mcguire.
Which release of Ubuntu do the updated packages solve the problem on for
you? There are fixes available for natty, oneiric, and precise.
Thanks!
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
Hi mcguire.
Which release of Ubuntu do the updated packages solve the problem on for
you? There are fixes available for natty, oneiric, and precise.
Thanks!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
Hello Martin,
I was affected by the bug ann I confirm that using the latest packages
from proposed solves the problem with my company's setup for LDAP.
Thanks a lot.
Regards.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
Hello Matt, or anyone else affected,
Accepted libgcrypt11 into precise-proposed. The package will build now
and be available in a few hours. Please test and give feedback here. See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed. Thank you in
** Branch linked: lp:ubuntu/precise-proposed/libgcrypt11
** Branch linked: lp:ubuntu/oneiric-proposed/libgcrypt11
** Branch linked: lp:ubuntu/natty-proposed/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in
Hello, Martin.
Any chance of getting that for lucid?
Thank you in advance!
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid
Yes, it'll be SRUed for lucid too, I'm just waiting for Adam to finish
preparing the debdiff and I'll review and upload it to lucid-proposed.
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
Hello Matt, or anyone else affected,
Accepted libgcrypt11 into precise-proposed. The package will build now
and be available in a few hours. Please test and give feedback here. See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed. Thank you in
** Branch linked: lp:ubuntu/precise-proposed/libgcrypt11
** Branch linked: lp:ubuntu/oneiric-proposed/libgcrypt11
** Branch linked: lp:ubuntu/natty-proposed/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
Hello, Martin.
Any chance of getting that for lucid?
Thank you in advance!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo,
Yes, it'll be SRUed for lucid too, I'm just waiting for Adam to finish
preparing the debdiff and I'll review and upload it to lucid-proposed.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
** Patch added: Oneiric-proposed debdiff
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/423252/+attachment/3150693/+files/libgcrypt11_1.5.0-1ubuntu0.1.oneiric.debdiff
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to
natty-proposed debdiff
** Patch added: libgcrypt11_1.4.6-4ubuntu2.1.natty.debdiff
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/423252/+attachment/3150719/+files/libgcrypt11_1.4.6-4ubuntu2.1.natty.debdiff
--
You received this bug notification because you are a member of Ubuntu
** Also affects: libgcrypt11 (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: sudo (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: libnss-ldap (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: eglibc (Ubuntu Natty)
** Patch added: Oneiric-proposed debdiff
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/423252/+attachment/3150693/+files/libgcrypt11_1.5.0-1ubuntu0.1.oneiric.debdiff
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
natty-proposed debdiff
** Patch added: libgcrypt11_1.4.6-4ubuntu2.1.natty.debdiff
https://bugs.launchpad.net/ubuntu/+source/libgcrypt11/+bug/423252/+attachment/3150719/+files/libgcrypt11_1.4.6-4ubuntu2.1.natty.debdiff
--
You received this bug notification because you are a member of Ubuntu
** Also affects: libgcrypt11 (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: sudo (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: libnss-ldap (Ubuntu Natty)
Importance: Undecided
Status: New
** Also affects: eglibc (Ubuntu Natty)
This bug was fixed in the package libgcrypt11 - 1.5.0-3ubuntu1
---
libgcrypt11 (1.5.0-3ubuntu1) quantal; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Tue, 15 May 2012 13:56:17 -0400
** Changed in:
** Branch linked: lp:ubuntu/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
Precise debdiff for SRU
** Patch added: libgcrypt11_1.5.0-3ubuntu1.precise.debdiff
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3149496/+files/libgcrypt11_1.5.0-3ubuntu1.precise.debdiff
--
You received this bug notification because you are a member of Ubuntu
Server
Uploaded your debdiff to precise-proposed with two small changes:
- Targeted precise-proposed instead or precise
- Changed version to -0ubuntu0.1 instead of -0ubuntu1
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in
This bug was fixed in the package libgcrypt11 - 1.5.0-3ubuntu1
---
libgcrypt11 (1.5.0-3ubuntu1) quantal; urgency=low
* Do not call global_init when setting thread callbacks (LP: #423252)
-- Adam Stokes adam.sto...@canonical.com Tue, 15 May 2012 13:56:17 -0400
** Changed in:
** Branch linked: lp:ubuntu/libgcrypt11
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2
suexec, and atd
To manage
Precise debdiff for SRU
** Patch added: libgcrypt11_1.5.0-3ubuntu1.precise.debdiff
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/423252/+attachment/3149496/+files/libgcrypt11_1.5.0-3ubuntu1.precise.debdiff
--
You received this bug notification because you are a member of Ubuntu
Bugs,
Uploaded your debdiff to precise-proposed with two small changes:
- Targeted precise-proposed instead or precise
- Changed version to -0ubuntu0.1 instead of -0ubuntu1
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
** Description changed:
- On Karmic (alpha 4 plus updates), changing the nsswitch.conf 'passwd'
- field to anything with 'ldap' as the first item breaks the ability to
- become root using 'su' and 'sudo' as anyone but root.
+ SRU Request:
+
+ [Impact]
+ As heavily outlined in the amount of
** Description changed:
SRU Request:
[Impact]
As heavily outlined in the amount of comments in this bug the impact is
detrimental to both community and enterprise users alike.
[Development Fix]
- Howard Chu released a patch in #73 which was later confirmed in #106 #108
as a
** Branch linked: lp:~adam-stokes/ubuntu/quantal/libgcrypt11/libgcrypt-
fix-423252
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid
** Description changed:
- On Karmic (alpha 4 plus updates), changing the nsswitch.conf 'passwd'
- field to anything with 'ldap' as the first item breaks the ability to
- become root using 'su' and 'sudo' as anyone but root.
+ SRU Request:
+
+ [Impact]
+ As heavily outlined in the amount of
** Description changed:
SRU Request:
[Impact]
As heavily outlined in the amount of comments in this bug the impact is
detrimental to both community and enterprise users alike.
[Development Fix]
- Howard Chu released a patch in #73 which was later confirmed in #106 #108
as a
** Branch linked: lp:~adam-stokes/ubuntu/quantal/libgcrypt11/libgcrypt-
fix-423252
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/423252
Title:
NSS using LDAP+SSL breaks setuid applications like su,
1 - 100 of 200 matches
Mail list logo