Bluehost.com Web Hosting $6.95

[Samba] Security leak in map_nt_perms?

This is a discussion on [Samba] Security leak in map_nt_perms? within the Samba forums, part of the Networking and Network Related category; Jeremy Allison ha scritto: > On Sat, Aug 16, 2008 at 09:42:51AM +0200, Abramo Bagnara wrote: >> ...


Go Back   Usenet Forums > Networking and Network Related > Samba

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #11 (permalink)  
Old 08-16-2008
Abramo Bagnara
 
Posts: n/a
Default Re: [Samba] Security leak in map_nt_perms?

Jeremy Allison ha scritto:
> On Sat, Aug 16, 2008 at 09:42:51AM +0200, Abramo Bagnara wrote:
>> This is exactly what I'd expect...

>
> Hmmm, not what I'd expect :-). I'll have to check into the POSIX
> mapping further, been a while since I wrote it. Are you checking
> on a system with POSIX ACLs enabled or just straight POSIX permissions ?


POSIX ACL are enabled

$ fgrep " / " /proc/mounts
/dev/disk/by-uuid/62c3ee18-49a9-4261-ad78-d746d0cbaf07 / ext3
rw,relatime,errors=remount-ro,acl,data=ordered 0 0

--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba

Reply With Quote
  #12 (permalink)  
Old 08-27-2008
Abramo Bagnara
 
Posts: n/a
Default Re: [Samba] Security leak in map_nt_perms?

Jeremy Allison ha scritto:
> On Sat, Aug 16, 2008 at 09:42:51AM +0200, Abramo Bagnara wrote:
>> This is exactly what I'd expect...

>
> Hmmm, not what I'd expect :-). I'll have to check into the POSIX
> mapping further, been a while since I wrote it. Are you checking
> on a system with POSIX ACLs enabled or just straight POSIX permissions ?


Any news?

Are you willing to accept a patch that make samba to ignore request to
allow FILE_{READ|WRITE}_{ATTRIBUTES|EA) when computing resulting Unix
permission/ACL?


--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba

Reply With Quote
  #13 (permalink)  
Old 08-27-2008
Jeremy Allison
 
Posts: n/a
Default Re: [Samba] Security leak in map_nt_perms?

On Wed, Aug 27, 2008 at 11:15:20PM +0200, Abramo Bagnara wrote:
> Jeremy Allison ha scritto:
> > On Sat, Aug 16, 2008 at 09:42:51AM +0200, Abramo Bagnara wrote:
> >> This is exactly what I'd expect...

> >
> > Hmmm, not what I'd expect :-). I'll have to check into the POSIX
> > mapping further, been a while since I wrote it. Are you checking
> > on a system with POSIX ACLs enabled or just straight POSIX permissions ?

>
> Any news?


No, haven't got to this yet. One more question, were you setting
the user or group ACE to '---' or an alternate user or group
ACE to '---' ?

> Are you willing to accept a patch that make samba to ignore request to
> allow FILE_{READ|WRITE}_{ATTRIBUTES|EA) when computing resulting Unix
> permission/ACL?


Not without examining this code thoroughly first, sorry.

Jeremy.
--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba

Reply With Quote
  #14 (permalink)  
Old 08-28-2008
Abramo Bagnara
 
Posts: n/a
Default Re: [Samba] Security leak in map_nt_perms?

Jeremy Allison ha scritto:
> On Wed, Aug 27, 2008 at 11:15:20PM +0200, Abramo Bagnara wrote:
>> Jeremy Allison ha scritto:
>>> On Sat, Aug 16, 2008 at 09:42:51AM +0200, Abramo Bagnara wrote:
>>>> This is exactly what I'd expect...
>>> Hmmm, not what I'd expect :-). I'll have to check into the POSIX
>>> mapping further, been a while since I wrote it. Are you checking
>>> on a system with POSIX ACLs enabled or just straight POSIX permissions ?

>> Any news?

>
> No, haven't got to this yet. One more question, were you setting
> the user or group ACE to '---' or an alternate user or group
> ACE to '---' ?


Leaving only READ_CONTROL (ignored permission) for:

user: lead to r-- permission
group: lead to --- permission
others/Everyone: lead to --- permission
acl user: lead to --- permission
acl group: lead to --- permission

Leaving no permission for:

user: lead to r-- permission
group: lead to --- permission
others/Everyone: lead to --- permission
acl user: lead to ACL removal
acl group: lead to ACL removal

>> Are you willing to accept a patch that make samba to ignore request to
>> > allow FILE_{READ|WRITE}_{ATTRIBUTES|EA) when computing resulting Unix
>> > permission/ACL?

>
> Not without examining this code thoroughly first, sorry.


Please count on my collaboration for whatever you need.

--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba

Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +1. The time now is 01:23 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0