[Pkg-samba-maint] Bug#586337: samba: Owner of file not available with kerberos (Samba bug 7139)

Daniel Piddock dgp-deb at corefiling.com
Fri Jun 18 14:26:47 UTC 2010

Package: samba
Version: 2:3.4.8~dfsg-1
Severity: important
Tags: patch upstream

Samba 3.4 does not correctly return/detect the owner of a file if
kerberos auth is used. This gives unusual experiences for files owned by
the user, if group of the parent folder is not +w:
* Can modify the file
* Cannot rename
* Cannot delete
* Cannot edit permissions

These problems make samba practically unusable in a kerberos enviornment.

Although submitted against 3.5 beta,
https://bugzilla.samba.org/show_bug.cgi?id=7139 contains debug
information and a patch. The patch applied cleanly against 3.4.8~dfsg-1
(at an offset) and solves the problem. It is included since 3.5.0rc3

-- System Information:
Debian Release: squeeze/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)

Kernel: Linux 2.6.32-3-686 (SMP w/1 CPU core)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages samba depends on:
ii  adduser                 3.112            add and remove users and groups
ii  debconf [debconf-2.0]   1.5.32           Debian configuration
management sy
ii  libacl1                 2.2.49-2         Access control list shared
ii  libattr1                1:2.4.44-1       Extended attribute shared
ii  libc6                   2.10.2-9         Embedded GNU C Library:
Shared lib
ii  libcap2                 1:2.17-2         support for getting/setting
ii  libcomerr2              1.41.12-1        common error description
ii  libcups2                1.4.3-1          Common UNIX Printing
System(tm) -
ii  libgnutls26             2.8.6-1          the GNU TLS library -
runtime libr
ii  libgssapi-krb5-2        1.8.1+dfsg-5     MIT Kerberos runtime
libraries - k
ii  libk5crypto3            1.8.1+dfsg-5     MIT Kerberos runtime
libraries - C
ii  libkrb5-3               1.8.1+dfsg-5     MIT Kerberos runtime libraries
ii  libldap-2.4-2           2.4.17-2.1       OpenLDAP libraries
ii  libpam-modules          1.1.1-3          Pluggable Authentication
Modules f
ii  libpam-runtime          1.1.1-3          Runtime support for the PAM
ii  libpam0g                1.1.1-3          Pluggable Authentication
Modules l
ii  libpopt0                1.16-1           lib for parsing cmdline
ii  libtalloc2              2.0.1-1          hierarchical pool based
memory all
ii  libwbclient0            2:3.4.8~dfsg-1   Samba winbind client library
ii  lsb-base                3.2-23.1         Linux Standard Base 3.2
init scrip
ii  procps                  1:3.2.8-9        /proc file system utilities
ii  samba-common            2:3.4.8~dfsg-1   common files used by both
the Samb
ii  update-inetd            4.36             inetd configuration file
ii  zlib1g                  1: compression library - runtime

Versions of packages samba recommends:
ii  logrotate                     3.7.8-6    Log rotation utility

Versions of packages samba suggests:
pn  ctdb                        <none>       (no description available)
pn  ldb-tools                   <none>       (no description available)
ii  openbsd-inetd [inet-superse 0.20080125-4 The OpenBSD Internet
pn  smbldap-tools               <none>       (no description available)

-- debconf information:
  samba/run_mode: daemons
  samba/generate_smbpasswd: true

Daniel Piddock, Systems Administrator, CoreFiling Limited

More information about the Pkg-samba-maint mailing list