[Bug 1719889] [NEW] internal-use-only SIDs being mapped to GIDs on users

Chris Weiss cweiss at gmail.com
Wed Sep 27 13:39:31 UTC 2017


Public bug reported:

Ubuntu server 16.04, samba/winbind package version 4.3.11+dfsg-
0ubuntu0.16.04.11

When logging in via SSH as a domain user the error "groups: cannot find
name for group ID 2005" is displayed.  running "id $username" also shows
this 2005 group with no name.

"wbinfo -G 2005" returns "S-1-18-1", no other lookups for 2005 or
S-1-18-1 return anything.

MS documentation lists S-1-18-1 as
AUTHENTICATION_AUTHORITY_ASSERTED_IDENTITY, which should not be exposed
in the manner that it is here.

ProblemType: Bug
DistroRelease: Ubuntu 16.04
Package: winbind 2:4.3.11+dfsg-0ubuntu0.16.04.11
ProcVersionSignature: Ubuntu 4.4.0-31.50-generic 4.4.13
Uname: Linux 4.4.0-31-generic x86_64
NonfreeKernelModules: zfs zunicode zcommon znvpair zavl
ApportVersion: 2.20.1-0ubuntu2.10
Architecture: amd64
Date: Wed Sep 27 08:25:47 2017
NmbdLog:
 
OtherFailedConnect: Yes
ProcEnviron:
 TERM=xterm-256color
 SHELL=/bin/bash
 PATH=(custom, no user)
 LANG=en_US.UTF-8
 XDG_RUNTIME_DIR=<set>
SambaServerRegression: No
SmbConfIncluded: Yes
SmbLog:
 
SourcePackage: samba
UpgradeStatus: Upgraded to xenial on 2016-05-09 (505 days ago)

** Affects: samba (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: amd64 apport-bug xenial

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/1719889

Title:
  internal-use-only SIDs being mapped to GIDs on users

Status in samba package in Ubuntu:
  New

Bug description:
  Ubuntu server 16.04, samba/winbind package version 4.3.11+dfsg-
  0ubuntu0.16.04.11

  When logging in via SSH as a domain user the error "groups: cannot
  find name for group ID 2005" is displayed.  running "id $username"
  also shows this 2005 group with no name.

  "wbinfo -G 2005" returns "S-1-18-1", no other lookups for 2005 or
  S-1-18-1 return anything.

  MS documentation lists S-1-18-1 as
  AUTHENTICATION_AUTHORITY_ASSERTED_IDENTITY, which should not be
  exposed in the manner that it is here.

  ProblemType: Bug
  DistroRelease: Ubuntu 16.04
  Package: winbind 2:4.3.11+dfsg-0ubuntu0.16.04.11
  ProcVersionSignature: Ubuntu 4.4.0-31.50-generic 4.4.13
  Uname: Linux 4.4.0-31-generic x86_64
  NonfreeKernelModules: zfs zunicode zcommon znvpair zavl
  ApportVersion: 2.20.1-0ubuntu2.10
  Architecture: amd64
  Date: Wed Sep 27 08:25:47 2017
  NmbdLog:
   
  OtherFailedConnect: Yes
  ProcEnviron:
   TERM=xterm-256color
   SHELL=/bin/bash
   PATH=(custom, no user)
   LANG=en_US.UTF-8
   XDG_RUNTIME_DIR=<set>
  SambaServerRegression: No
  SmbConfIncluded: Yes
  SmbLog:
   
  SourcePackage: samba
  UpgradeStatus: Upgraded to xenial on 2016-05-09 (505 days ago)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/1719889/+subscriptions



More information about the foundations-bugs mailing list