Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1043557 - nscd segfaults when running sudo with netgroup caching enabled.
nscd segfaults when running sudo with netgroup caching enabled.
Status: CLOSED ERRATA
Product: Red Hat Enterprise Linux 6
Classification: Red Hat
Component: glibc (Show other bugs)
6.5
x86_64 Linux
high Severity high
: rc
: 6.6
Assigned To: Siddhesh Poyarekar
Arjun Shankar
: Reopened, ZStream
: 1087838 (view as bug list)
Depends On:
Blocks: 994246 1023566 1056252 1054846 1087789
  Show dependency treegraph
 
Reported: 2013-12-16 11:09 EST by hgraham
Modified: 2016-11-24 07:10 EST (History)
19 users (show)

See Also:
Fixed In Version: glibc-2.12-1.133.el6
Doc Type: Bug Fix
Doc Text:
Due to problems with buffer extension and reallocation, the nscd daemon terminated unexpectedly with a segmentation fault when processing long netgroup entries. With this update, the handling of long netgroup entries has been corrected and nscd no longer crashes in the described scenario.
Story Points: ---
Clone Of:
: 1138520 (view as bug list)
Environment:
Last Closed: 2014-10-14 00:42:37 EDT
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Knowledge Base (Solution) 643023 None None None Never
Red Hat Product Errata RHSA-2014:1391 normal SHIPPED_LIVE Moderate: glibc security, bug fix, and enhancement update 2014-10-13 21:11:04 EDT

  None (edit)
Description hgraham 2013-12-16 11:09:26 EST
Description of problem:
After upgrading to RHEL6.5 nscd segfaults when a user runs sudo. It appears the problem is due to netgroup caching by nscd. The netgroups are stored in LDAP.

Version-Release number of selected component (if applicable):
nscd-2.12-1.132.el6.x86_64

How reproducible:
I haven't reproduced, but this is happening on multiple servers for the customer

Steps to Reproduce:
1. Need to use sudo with nscd netgroup caching and netgroups stored in LDAP

Actual results:
nscd segfaults when running sudo

Dec 13 08:54:28 server kernel: nscd[11646]: segfault at 7fffe54ed000 ip 00007ffff6e32aab sp 00007fffe54e98e8 error 6 in libc-2.12.so[7ffff6da9000+18b000]

Expected results:
nscd doesn't segfault when running sudo


Additional info:
possible workaround may be to disable netgroup caching by nscd
Comment 20 Carlos O'Donell 2013-12-20 14:04:58 EST
The solution in this case is to upgrade nss nss-tools and nss-sysinit. NSS is used by glibc for hashing functions and there are bugs in nss* that impact glibc and nscd.
Comment 65 Siddhesh Poyarekar 2014-04-15 10:15:18 EDT
*** Bug 1087838 has been marked as a duplicate of this bug. ***
Comment 67 errata-xmlrpc 2014-10-14 00:42:37 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

http://rhn.redhat.com/errata/RHSA-2014-1391.html

Note You need to log in before you can comment on or make changes to this bug.