Bug#314461: Denial of service and possible security breach

2006-05-17 Thread Petter Österlund
Hi! The in libnss-ldap can be exploted as * Denial of service - all that is needed is to do two authentication attempts at the same time and the samba will become unresponsive. * It is also possible (at least theoretical) that two users may be assigned each others credentials. For this rea

Bug#314461: Bug in libnss_ldap identified

2006-05-09 Thread Petter Österlund
Hi! I have experinced a bug in smbd making it hang or cause a backlog crash very similar to the one in this TR. And I have also located a bug in libnss_ldap that can explain the behaviour. I also have a work around for it. I think that it may be the same as in this TR. I have filed a bug at pad

Bug#351897: libnss-ldap and pam-ldap extreemly slow if ca-certicates installed

2006-02-08 Thread Petter Österlund
Package: libnss-ldap Version: 238-1.1 libnss-ldap hits a severe performance penalty when the cacertdir parameter points to a directory with a large number of certificate files. The slow down is a factor 80 after installing package ca-certificates! It is primarily related to the number of files

Bug#351893: cups lpadmin hangs when using encryption

2006-02-08 Thread Petter Österlund
Package: cupsys Version: 1.1.23-15 I have cupsd.conf configured to use encryption IfRequested. Adding printer kalle always works just fine without encryption # lpadmin -p Kalle -P ~lpetos/xr_dc440.ppd -v ipp://kalle/ When using encryption it does not work most of the time, repeating command se