luma wrong md4 hashes

Bug #297148 reported by Sergio Tosti on 2008-11-12
16
This bug affects 2 people
Affects Status Importance Assigned to Milestone
Luma
Unknown
Unknown
luma (Debian)
Fix Released
Unknown
luma (Ubuntu)
Medium
Unassigned
Nominated for Hardy by Sergio Tosti
Nominated for Intrepid by Sergio Tosti

Bug Description

Binary package hint: luma

Impact: sambaNTPassword calculated by Luma is incorrect

When calculates MD4 hashes for samba passwords Luma returnes always lmhash instead of nthash, The attached patch resolves the problem.
Regards

--Sergio

Related branches

Sergio Tosti (zeno979) wrote :
Changed in luma:
status: New → Confirmed
marco.pallotta (marco-pallotta) wrote :

I can confirm this issue in Hardy Heron x86 too (luma version 2.3)

Sergio Tosti (zeno979) on 2008-11-14
description: updated
James Westby (james-w) wrote :

Hi,

Thanks for the patch. I have reported the problem to the authors of the
software.

While the patch looks sensible to me I would like to wait a while to see
if they respond.

It would be useful if you could give us instructions on how to reproduce the
problem so that we can test the fix.

Thanks,

James

Changed in luma:
importance: Undecided → Medium
status: Confirmed → Triaged
Sergio Tosti (zeno979) wrote :

How to reproduce the problem:

PREREQUISITE:
working ldap server with samba schema

- install luma and python-smbpasswd
- configure luma to connect to your ldap
- open an entry object that have objectClass=sambaSamAccount
- generate sambaLMPassword and sambaNTPassword selecting properly encryption and look at these, are identical, in fact samba server (or radius server) fails to authenticate users.

I haven't tried newer version of luma but only the version packaged for hardy,intrepid and jaunty.

Luca Falavigna (dktrkranz) wrote :

Marco, could you please verify if proposed patch works for you?

marco.pallotta (marco-pallotta) wrote :

I can confirm that the fix proposed by Sergio Tosti is working for me.

Launchpad Janitor (janitor) wrote :

This bug was fixed in the package luma - 2.3-1.1ubuntu1

---------------
luma (2.3-1.1ubuntu1) jaunty; urgency=low

  * Fixed calculations of MD4 hashes for Samba fields that returned
   lmhash instead of nthash (LP: #297148).

 -- Sergio Tosti <email address hidden> Wed, 12 Nov 2008 12:04:16 +0100

Changed in luma:
status: Triaged → Fix Released
Changed in luma (Debian):
status: Unknown → Fix Released
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers

Patches

Remote bug watches

Bug watches keep track of this bug in other bug trackers.