@Andreas: wow, that explains a lot, especially why installing nscd seems to help. Because if nscd is not running, the libnss_ldap function getpwnam() resolves to will run in process, and someone in there (libgnutls ?) does the priviledge drop. Good catch, let's investigate further.
** Changed in: sudo (Kairos Linux) Importance: Undecided => High ** Changed in: sudo (Kairos Linux) Status: New => Confirmed ** Changed in: sudo (Kairos Linux) Assignee: (unassigned) => Philipp Kaluza (pixelpapst) -- NSS using LDAP on Karmic breaks 'su' and 'sudo' https://bugs.launchpad.net/bugs/423252 You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to libnss-ldap in ubuntu. -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs